I0402 08:53:32.971394 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0402 08:53:32.971508 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0402 08:53:32.971576 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0402 08:53:32.976906 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0402 08:53:32.977557 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0402 08:53:32.977651 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0402 08:53:32.977663 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0402 08:53:32.980328 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0402 08:53:32.995489 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0402 08:53:32.995730 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0402 08:53:32.995778 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0402 08:53:33.000378 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0402 08:53:33.000481 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0402 08:53:33.006745 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0402 08:53:33.010745 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0402 08:53:33.013473 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0402 08:53:33.015803 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0402 08:53:33.018281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0402 08:53:33.020851 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0402 08:53:33.023873 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0402 08:53:33.029511 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0402 08:53:33.032395 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0402 08:53:33.034714 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0402 08:53:33.034842 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0402 08:53:33.037706 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0402 08:53:33.040058 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0402 08:53:33.042774 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0402 08:53:33.042807 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0402 08:53:33.042967 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0402 08:53:33.044777 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0402 08:53:33.046408 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0402 08:53:33.049306 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0402 08:53:33.056329 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0402 08:53:33.058568 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.058655 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.058859 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.076752 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.097469 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.109605 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.129663 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.145487 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.149016 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:33.166135 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 08:53:46.516518 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-02 08:53:46.516496555 +0000 UTC m=+13.579801863 I0402 08:53:47.261591 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-02 08:53:47.261572788 +0000 UTC m=+14.324878086 I0402 08:53:47.261771 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 08:53:47.261856 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 08:53:47.261843135 +0000 UTC m=+14.325148433 E0402 08:53:47.315808 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 08:53:47.315976 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-02 08:53:47.315919691 +0000 UTC m=+14.379224999 E0402 08:53:47.316020 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 08:53:47.320835 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:53:47.320930 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 08:53:47.320966 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 08:53:47.320954808 +0000 UTC m=+14.384260106 E0402 08:53:47.362827 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0402 08:53:47.363026 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 08:53:47.363094 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 08:53:47.363168 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0402 08:53:47.442176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:53:47.468698 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-sqcv2" condition "Approved" to 2026-04-02 08:53:47.468681046 +0000 UTC m=+14.531986344 I0402 08:53:47.528944 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-sqcv2" condition "Ready" to 2026-04-02 08:53:47.52891777 +0000 UTC m=+14.592223078 I0402 08:53:47.612100 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:53:47.612056333 +0000 UTC m=+14.675361631 I0402 08:53:47.645884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:53:47.646211 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:53:47.646204171 +0000 UTC m=+14.709509449 I0402 08:53:47.684477 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:53:52.364003 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:53:52.363982651 +0000 UTC m=+19.427287959 I0402 08:54:18.639993 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 08:54:18.640031 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-02 08:54:18.640023072 +0000 UTC m=+45.703328340 I0402 08:54:18.640204 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-02 08:54:18.640186576 +0000 UTC m=+45.703491854 I0402 08:54:18.651497 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-02 08:54:18.651484534 +0000 UTC m=+45.714789812 I0402 08:54:18.659988 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:54:18.663111 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-02 08:54:18.663100551 +0000 UTC m=+45.726405829 I0402 08:54:18.892959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:54:18.923645 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hmxdx" condition "Approved" to 2026-04-02 08:54:18.923632512 +0000 UTC m=+45.986937790 I0402 08:54:18.955332 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hmxdx" condition "Ready" to 2026-04-02 08:54:18.955319604 +0000 UTC m=+46.018624882 I0402 08:54:18.985806 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:54:18.985789063 +0000 UTC m=+46.049094361 I0402 08:54:19.007562 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:54:19.061364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:24.253819 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-02 08:57:24.253771972 +0000 UTC m=+231.317077280 I0402 08:57:24.253822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 08:57:24.253965 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-02 08:57:24.253959887 +0000 UTC m=+231.317265165 E0402 08:57:24.557923 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 08:57:24.557978 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-02 08:57:24.557968886 +0000 UTC m=+231.621274194 I0402 08:57:24.558031 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 08:57:24.562702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:24.562814 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 08:57:24.562846 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-02 08:57:24.562836455 +0000 UTC m=+231.626141763 E0402 08:57:24.573266 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0402 08:57:24.573356 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 08:57:24.573385 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0402 08:57:24.573419 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0402 08:57:24.591802 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 08:57:24.591842 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-02 08:57:24.591831707 +0000 UTC m=+231.655137015 I0402 08:57:24.592300 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-02 08:57:24.59229146 +0000 UTC m=+231.655596758 I0402 08:57:24.714490 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:24.714587 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-02 08:57:24.714575637 +0000 UTC m=+231.777880935 I0402 08:57:25.348203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:25.536393 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-rgtkq" condition "Approved" to 2026-04-02 08:57:25.536368458 +0000 UTC m=+232.599673756 I0402 08:57:26.001335 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-kdbcg" condition "Approved" to 2026-04-02 08:57:26.001325573 +0000 UTC m=+233.064630861 I0402 08:57:26.008242 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-rgtkq" condition "Ready" to 2026-04-02 08:57:26.008230398 +0000 UTC m=+233.071535666 I0402 08:57:26.515970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-kdbcg" condition "Ready" to 2026-04-02 08:57:26.515929932 +0000 UTC m=+233.579235240 I0402 08:57:26.657396 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:57:26.65737754 +0000 UTC m=+233.720682848 I0402 08:57:26.816873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:26.817201 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:57:26.817193957 +0000 UTC m=+233.880499235 I0402 08:57:26.851262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:29.574062 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:57:29.574052804 +0000 UTC m=+236.637358072 I0402 08:57:29.591161 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-kdbcg" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:57:29.59114482 +0000 UTC m=+236.654450128 I0402 08:57:29.622507 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:57:29.622491205 +0000 UTC m=+236.685796493 I0402 08:57:29.646537 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 08:57:29.647286 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 08:57:29.647253115 +0000 UTC m=+236.710558393 I0402 08:57:29.664876 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:00:14.518879 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-141.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:00:14.518933 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-141.nip.io-tls" condition "Ready" to 2026-04-02 09:00:14.518911094 +0000 UTC m=+401.582216432 I0402 09:00:14.518944 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-141.nip.io-tls" condition "Issuing" to 2026-04-02 09:00:14.518930155 +0000 UTC m=+401.582235453 I0402 09:00:14.537768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:00:14.537902 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-141.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:00:14.537935 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-141.nip.io-tls" condition "Issuing" to 2026-04-02 09:00:14.537924268 +0000 UTC m=+401.601229576 I0402 09:00:14.756771 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-141.nip.io-tls-2qh45" condition "Approved" to 2026-04-02 09:00:14.756751987 +0000 UTC m=+401.820057285 I0402 09:00:14.777059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-141.nip.io-tls-2qh45" condition "Ready" to 2026-04-02 09:00:14.777045706 +0000 UTC m=+401.840350984 I0402 09:00:14.804531 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:00:14.804519449 +0000 UTC m=+401.867824757 I0402 09:00:14.830627 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:00:14.830905 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:00:14.830892912 +0000 UTC m=+401.894198180 I0402 09:00:14.847546 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:01:29.109451 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-02 09:01:29.109409124 +0000 UTC m=+476.172714422 I0402 09:01:29.109645 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:01:29.109733 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 09:01:29.109723872 +0000 UTC m=+476.173029170 E0402 09:01:29.122927 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 09:01:29.123001 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-02 09:01:29.122989252 +0000 UTC m=+476.186294560 E0402 09:01:29.123171 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 09:01:29.125576 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:01:29.125647 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:01:29.125675 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 09:01:29.125667093 +0000 UTC m=+476.188972381 E0402 09:01:29.134879 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0402 09:01:29.134950 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 09:01:29.134973 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 09:01:29.135002 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0402 09:01:29.163716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:01:29.164173 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zs7cv" condition "Approved" to 2026-04-02 09:01:29.164154815 +0000 UTC m=+476.227460123 I0402 09:01:29.177201 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zs7cv" condition "Ready" to 2026-04-02 09:01:29.177181527 +0000 UTC m=+476.240486825 I0402 09:01:29.197643 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:01:29.19762777 +0000 UTC m=+476.260933048 I0402 09:01:29.213170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:01:29.257018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:01:34.136325 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:01:34.13631067 +0000 UTC m=+481.199615978 I0402 09:02:19.946735 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:02:19.946790 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-02 09:02:19.946784603 +0000 UTC m=+527.010089881 I0402 09:02:19.947115 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 09:02:19.947098001 +0000 UTC m=+527.010403279 I0402 09:02:19.955781 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 09:02:19.955767135 +0000 UTC m=+527.019072433 I0402 09:02:19.957271 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:02:19.957301 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-02 09:02:19.957295367 +0000 UTC m=+527.020600645 I0402 09:02:19.957992 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-02 09:02:19.957985325 +0000 UTC m=+527.021290603 I0402 09:02:19.958278 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:02:19.958357 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-02 09:02:19.958350294 +0000 UTC m=+527.021655562 I0402 09:02:19.980605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:19.980689 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:02:19.980718 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-02 09:02:19.980708457 +0000 UTC m=+527.044013735 I0402 09:02:19.987134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:19.987502 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:19.987683 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 09:02:19.987673075 +0000 UTC m=+527.050978373 I0402 09:02:19.988173 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:02:19.988201 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-02 09:02:19.988196219 +0000 UTC m=+527.051501497 I0402 09:02:20.105388 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.133469 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2l9s8" condition "Approved" to 2026-04-02 09:02:20.133451112 +0000 UTC m=+527.196756420 I0402 09:02:20.159331 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2l9s8" condition "Ready" to 2026-04-02 09:02:20.159316359 +0000 UTC m=+527.222621667 I0402 09:02:20.188936 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:20.188918827 +0000 UTC m=+527.252224135 I0402 09:02:20.214867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.215220 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:20.215212866 +0000 UTC m=+527.278518144 I0402 09:02:20.223276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.240317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.240503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.241086 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.241324 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:20.241316169 +0000 UTC m=+527.304621437 I0402 09:02:20.246342 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5qjhx" condition "Approved" to 2026-04-02 09:02:20.246336055 +0000 UTC m=+527.309641323 I0402 09:02:20.274650 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5qjhx" condition "Ready" to 2026-04-02 09:02:20.274640327 +0000 UTC m=+527.337945595 I0402 09:02:20.472468 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:20.472459157 +0000 UTC m=+527.535764425 I0402 09:02:20.589958 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:20.590393 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:20.590385414 +0000 UTC m=+527.653690692 I0402 09:02:20.934924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-b68bg" condition "Approved" to 2026-04-02 09:02:20.934910828 +0000 UTC m=+527.998216106 I0402 09:02:20.939587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:21.244391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-b68bg" condition "Ready" to 2026-04-02 09:02:21.244376716 +0000 UTC m=+528.307682014 I0402 09:02:21.539180 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:21.588871 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:21.588851737 +0000 UTC m=+528.652157035 I0402 09:02:21.688518 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:21.689049 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:21.689035668 +0000 UTC m=+528.752340966 I0402 09:02:21.950089 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:21.987780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:32.359385 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:02:32.359433 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" condition "Issuing" to 2026-04-02 09:02:32.359423729 +0000 UTC m=+539.422729007 I0402 09:02:32.359801 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" condition "Ready" to 2026-04-02 09:02:32.359780588 +0000 UTC m=+539.423085926 I0402 09:02:32.379092 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:32.379205 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" condition "Ready" to 2026-04-02 09:02:32.379197651 +0000 UTC m=+539.442502939 I0402 09:02:32.741025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:02:33.032687 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-n9fkh-rlcm8" condition "Approved" to 2026-04-02 09:02:33.032659578 +0000 UTC m=+540.095964886 I0402 09:02:33.064000 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-n9fkh-rlcm8" condition "Ready" to 2026-04-02 09:02:33.063991283 +0000 UTC m=+540.127296551 I0402 09:02:33.100586 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:02:33.100572429 +0000 UTC m=+540.163877707 I0402 09:02:33.122258 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n9fkh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:03:10.603517 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-02 09:03:10.603499845 +0000 UTC m=+577.666805123 I0402 09:03:10.603552 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:03:10.603653 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-02 09:03:10.603638929 +0000 UTC m=+577.666944237 I0402 09:03:10.635211 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:03:10.635332 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-02 09:03:10.635322384 +0000 UTC m=+577.698627692 I0402 09:03:10.830220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:03:10.865229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-c86xw" condition "Approved" to 2026-04-02 09:03:10.865214087 +0000 UTC m=+577.928519385 I0402 09:03:10.900877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-c86xw" condition "Ready" to 2026-04-02 09:03:10.900864618 +0000 UTC m=+577.964169896 I0402 09:03:10.961515 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:03:10.961499321 +0000 UTC m=+578.024804609 I0402 09:03:10.985628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:03:11.065240 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:06:33.099814 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-02 09:06:33.099783838 +0000 UTC m=+780.163089136 I0402 09:06:33.100143 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:06:33.100290 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-02 09:06:33.10027635 +0000 UTC m=+780.163581658 I0402 09:06:33.115242 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:06:33.115306 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:06:33.115322 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-02 09:06:33.115316446 +0000 UTC m=+780.178621714 I0402 09:06:33.267884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:06:33.273169 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-q25rb" condition "Approved" to 2026-04-02 09:06:33.273156409 +0000 UTC m=+780.336461687 I0402 09:06:33.292341 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-q25rb" condition "Ready" to 2026-04-02 09:06:33.292322716 +0000 UTC m=+780.355627994 I0402 09:06:33.324377 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:06:33.32436189 +0000 UTC m=+780.387667168 I0402 09:06:33.348367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:06:33.348663 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:06:33.348657335 +0000 UTC m=+780.411962593 I0402 09:06:33.372131 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:06:33.372552 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:06:33.372540359 +0000 UTC m=+780.435845637 I0402 09:09:11.544423 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-02 09:09:11.544378921 +0000 UTC m=+938.607684219 I0402 09:09:11.544616 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:09:11.544713 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 09:09:11.54470318 +0000 UTC m=+938.608008478 I0402 09:09:11.568050 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:09:11.568180 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-02 09:09:11.568169064 +0000 UTC m=+938.631474372 I0402 09:09:11.752047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:09:11.816662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-pnbk9" condition "Approved" to 2026-04-02 09:09:11.816653918 +0000 UTC m=+938.879959186 I0402 09:09:11.866249 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-pnbk9" condition "Ready" to 2026-04-02 09:09:11.866237148 +0000 UTC m=+938.929542426 I0402 09:09:11.940693 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:09:11.940676769 +0000 UTC m=+939.003982047 I0402 09:09:11.977808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:10:33.778685 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-02 09:10:33.778666461 +0000 UTC m=+1020.841971759 I0402 09:10:33.779314 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:10:33.779346 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-02 09:10:33.779340179 +0000 UTC m=+1020.842645477 I0402 09:10:33.796454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:10:33.796569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:10:33.796595 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-02 09:10:33.796586725 +0000 UTC m=+1020.859892033 I0402 09:10:34.281756 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-sjrz2" condition "Approved" to 2026-04-02 09:10:34.281739096 +0000 UTC m=+1021.345044374 I0402 09:10:34.303063 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-sjrz2" condition "Ready" to 2026-04-02 09:10:34.303044912 +0000 UTC m=+1021.366350180 I0402 09:10:34.343222 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:10:34.343204808 +0000 UTC m=+1021.406510086 I0402 09:10:34.374732 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:10:34.375218 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:10:34.375210513 +0000 UTC m=+1021.438515781 I0402 09:10:34.379645 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:10:34.394570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:10:34.394940 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:10:34.394931637 +0000 UTC m=+1021.458236915 I0402 09:13:53.341484 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-02 09:13:53.341441872 +0000 UTC m=+1220.404747170 I0402 09:13:53.341508 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:13:53.341592 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 09:13:53.341579565 +0000 UTC m=+1220.404884873 I0402 09:13:53.360380 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 09:13:53.360451 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 09:13:53.360468 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 09:13:53.360460567 +0000 UTC m=+1220.423765845 I0402 09:13:53.636572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-vxwdq" condition "Approved" to 2026-04-02 09:13:53.636560736 +0000 UTC m=+1220.699865994 I0402 09:13:53.658462 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-vxwdq" condition "Ready" to 2026-04-02 09:13:53.658449879 +0000 UTC m=+1220.721755157 I0402 09:13:53.693922 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 09:13:53.69390784 +0000 UTC m=+1220.757213118 I0402 09:13:53.713429 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"