I0413 17:45:41.680919 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0413 17:45:41.681059 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0413 17:45:41.681239 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0413 17:45:41.689841 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0413 17:45:41.690469 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0413 17:45:41.690616 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0413 17:45:41.690659 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0413 17:45:41.694158 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0413 17:45:41.711261 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0413 17:45:41.711637 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0413 17:45:41.711699 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0413 17:45:41.715418 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0413 17:45:41.717982 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0413 17:45:41.724713 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0413 17:45:41.730419 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0413 17:45:41.734167 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0413 17:45:41.734217 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0413 17:45:41.734269 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0413 17:45:41.734376 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0413 17:45:41.739602 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0413 17:45:41.742872 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0413 17:45:41.745376 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0413 17:45:41.748652 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0413 17:45:41.754422 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0413 17:45:41.757442 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0413 17:45:41.760314 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0413 17:45:41.762718 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0413 17:45:41.765073 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0413 17:45:41.766825 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0413 17:45:41.768732 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0413 17:45:41.770595 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0413 17:45:41.774960 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0413 17:45:41.775123 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0413 17:45:41.779630 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.779644 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.781557 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.781698 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.799784 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.815789 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.834662 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.853790 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.869122 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:41.898204 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:45:54.906159 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-13 17:45:54.906140409 +0000 UTC m=+13.257039862 I0413 17:45:55.691084 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-13 17:45:55.691067828 +0000 UTC m=+14.041967261 I0413 17:45:55.692041 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:45:55.692066 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 17:45:55.69206139 +0000 UTC m=+14.042960823 E0413 17:45:55.708729 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:45:55.708842 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-13 17:45:55.708833828 +0000 UTC m=+14.059733291 E0413 17:45:55.708875 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:45:55.709672 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:45:55.709749 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:45:55.709776 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 17:45:55.709769348 +0000 UTC m=+14.060668801 E0413 17:45:55.718325 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0413 17:45:55.718429 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:45:55.718463 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:45:55.718501 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0413 17:45:55.769399 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-sscv6" condition "Approved" to 2026-04-13 17:45:55.769378841 +0000 UTC m=+14.120278304 I0413 17:45:55.785116 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-sscv6" condition "Ready" to 2026-04-13 17:45:55.785103607 +0000 UTC m=+14.136003040 I0413 17:45:55.822391 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:45:55.822379293 +0000 UTC m=+14.173278726 I0413 17:45:55.843431 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:00.720596 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:00.720569026 +0000 UTC m=+19.071468489 I0413 17:46:01.406696 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:46:01.406743 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 17:46:01.406733374 +0000 UTC m=+19.757632807 I0413 17:46:01.407196 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-13 17:46:01.407189984 +0000 UTC m=+19.758089437 I0413 17:46:01.421511 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-13 17:46:01.42149395 +0000 UTC m=+19.772393383 I0413 17:46:01.445115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:01.445209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:46:01.445232 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 17:46:01.445225776 +0000 UTC m=+19.796125189 I0413 17:46:01.633850 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-rwbds" condition "Approved" to 2026-04-13 17:46:01.633826546 +0000 UTC m=+19.984725979 I0413 17:46:01.668532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-rwbds" condition "Ready" to 2026-04-13 17:46:01.668515577 +0000 UTC m=+20.019415010 I0413 17:46:01.703604 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:01.703591836 +0000 UTC m=+20.054491269 I0413 17:46:01.725067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:01.725473 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:01.725462763 +0000 UTC m=+20.076362206 I0413 17:46:01.755498 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.496967 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:46:06.497016 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-13 17:46:06.49700517 +0000 UTC m=+24.847904623 I0413 17:46:06.497384 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-13 17:46:06.497355288 +0000 UTC m=+24.848254761 I0413 17:46:06.512821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.513150 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-13 17:46:06.513135594 +0000 UTC m=+24.864035027 E0413 17:46:06.514004 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 17:46:06.514059 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-13 17:46:06.514049794 +0000 UTC m=+24.864949227 I0413 17:46:06.514114 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0413 17:46:06.527080 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0413 17:46:06.527185 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 17:46:06.527251 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0413 17:46:06.527283 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0413 17:46:06.527328 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:46:06.527354 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-13 17:46:06.527349937 +0000 UTC m=+24.878249360 I0413 17:46:06.527669 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-13 17:46:06.527660465 +0000 UTC m=+24.878559888 I0413 17:46:06.548593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.548947 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-13 17:46:06.548937869 +0000 UTC m=+24.899837292 I0413 17:46:06.678098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.705731 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-n46k9" condition "Approved" to 2026-04-13 17:46:06.705712668 +0000 UTC m=+25.056612091 I0413 17:46:06.726927 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-n46k9" condition "Ready" to 2026-04-13 17:46:06.726907792 +0000 UTC m=+25.077807215 I0413 17:46:06.819989 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.859004 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-x88st" condition "Approved" to 2026-04-13 17:46:06.858982483 +0000 UTC m=+25.209881946 I0413 17:46:06.903020 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-x88st" condition "Ready" to 2026-04-13 17:46:06.902998693 +0000 UTC m=+25.253898116 I0413 17:46:06.939019 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:06.939004432 +0000 UTC m=+25.289903865 I0413 17:46:06.965111 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.965483 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:06.965473588 +0000 UTC m=+25.316373011 I0413 17:46:06.983426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:06.990168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:07.006025 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:46:07.006066 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-13 17:46:07.006056454 +0000 UTC m=+25.356955907 I0413 17:46:07.006435 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-13 17:46:07.006427262 +0000 UTC m=+25.357326715 I0413 17:46:07.022317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:07.022429 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-13 17:46:07.022420624 +0000 UTC m=+25.373320067 I0413 17:46:07.044341 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:07.130459 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-jlzbg" condition "Approved" to 2026-04-13 17:46:07.130444802 +0000 UTC m=+25.481344225 I0413 17:46:07.226517 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-jlzbg" condition "Ready" to 2026-04-13 17:46:07.226504244 +0000 UTC m=+25.577403667 I0413 17:46:07.665520 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:07.665502273 +0000 UTC m=+26.016401706 I0413 17:46:07.760019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:07.760381 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:07.76037256 +0000 UTC m=+26.111271993 I0413 17:46:07.776589 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:46:07.776647 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-13 17:46:07.776632896 +0000 UTC m=+26.127532349 I0413 17:46:07.777031 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-13 17:46:07.777022935 +0000 UTC m=+26.127922388 I0413 17:46:08.063437 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:08.063551 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-13 17:46:08.063541796 +0000 UTC m=+26.414441229 I0413 17:46:08.104589 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:08.158077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:08.406120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:08.522981 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-04-13 17:46:08.522966121 +0000 UTC m=+26.873865554 I0413 17:46:08.560936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-w7jwd" condition "Approved" to 2026-04-13 17:46:08.560910241 +0000 UTC m=+26.911809674 I0413 17:46:08.716799 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-w7jwd" condition "Ready" to 2026-04-13 17:46:08.716780422 +0000 UTC m=+27.067679875 E0413 17:46:09.192127 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers.setup" resource_name="libvirt-api" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 17:46:09.192188 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-04-13 17:46:09.192174138 +0000 UTC m=+27.543073571 I0413 17:46:09.192257 1 sync.go:62] "Error initializing issuer: secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers" resource_name="libvirt-api" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 17:46:09.255091 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:09.255071611 +0000 UTC m=+27.605971034 E0413 17:46:09.310794 1 controller.go:167] "re-queuing item due to error processing" err="secret \"libvirt-api-ca\" not found" logger="cert-manager.issuers" key="openstack/libvirt-api" I0413 17:46:09.311044 1 conditions.go:85] Found status change for Issuer "libvirt-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:09.311026857 +0000 UTC m=+27.661926280 I0413 17:46:09.460975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:09.462087 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:09.462072374 +0000 UTC m=+27.812971837 I0413 17:46:09.859051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:09.907958 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:46:11.528587 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:11.528571311 +0000 UTC m=+29.879470764 I0413 17:46:11.546979 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-n46k9" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:11.546962474 +0000 UTC m=+29.897861907 I0413 17:46:11.582259 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:46:11.582235008 +0000 UTC m=+29.933134471 I0413 17:46:11.603104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:50:22.718623 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready" to 2026-04-13 17:50:22.718584255 +0000 UTC m=+281.069483718 I0413 17:50:22.719511 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:50:22.719545 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Issuing" to 2026-04-13 17:50:22.719537165 +0000 UTC m=+281.070436628 I0413 17:50:22.739996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:50:22.740064 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:50:22.740084 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Issuing" to 2026-04-13 17:50:22.740076952 +0000 UTC m=+281.090976415 I0413 17:50:23.034251 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-89.nip.io-tls-xw2sn" condition "Approved" to 2026-04-13 17:50:23.034231992 +0000 UTC m=+281.385131445 I0413 17:50:23.053124 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-89.nip.io-tls-xw2sn" condition "Ready" to 2026-04-13 17:50:23.053110464 +0000 UTC m=+281.404009927 I0413 17:50:23.080882 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:50:23.080850705 +0000 UTC m=+281.431750168 I0413 17:50:23.136349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:50:23.136895 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:50:23.136882037 +0000 UTC m=+281.487781490 I0413 17:50:23.151088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:50:23.151386 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:50:23.151377605 +0000 UTC m=+281.502277038 I0413 17:50:23.152594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:51:31.409430 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-13 17:51:31.40940665 +0000 UTC m=+349.760306113 I0413 17:51:31.409663 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:51:31.409740 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 17:51:31.409726487 +0000 UTC m=+349.760625940 E0413 17:51:31.421704 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:51:31.421746 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-13 17:51:31.421737442 +0000 UTC m=+349.772636905 E0413 17:51:31.421802 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:51:31.423867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:51:31.423962 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:51:31.423999 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 17:51:31.42399059 +0000 UTC m=+349.774890023 E0413 17:51:31.433621 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0413 17:51:31.433738 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:51:31.433787 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:51:31.433838 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0413 17:51:31.462068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:51:31.466088 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-fftm2" condition "Approved" to 2026-04-13 17:51:31.466066265 +0000 UTC m=+349.816965728 I0413 17:51:31.478712 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-fftm2" condition "Ready" to 2026-04-13 17:51:31.478697794 +0000 UTC m=+349.829597227 I0413 17:51:31.500587 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:51:31.500568099 +0000 UTC m=+349.851467542 I0413 17:51:31.518884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:51:31.519104 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:51:31.519097362 +0000 UTC m=+349.869996785 I0413 17:51:31.532269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:51:31.536861 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:51:36.434218 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:51:36.434199262 +0000 UTC m=+354.785098715 I0413 17:52:18.457648 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 17:52:18.457601284 +0000 UTC m=+396.808500727 I0413 17:52:18.458124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:18.458150 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-13 17:52:18.458145705 +0000 UTC m=+396.809045138 I0413 17:52:18.459872 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:18.459895 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 17:52:18.459890443 +0000 UTC m=+396.810789886 I0413 17:52:18.460134 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-13 17:52:18.460129318 +0000 UTC m=+396.811028751 I0413 17:52:18.460447 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 17:52:18.460440334 +0000 UTC m=+396.811339757 I0413 17:52:18.460576 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:18.460589 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-13 17:52:18.460586237 +0000 UTC m=+396.811485660 I0413 17:52:18.493106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:18.493204 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 17:52:18.49319459 +0000 UTC m=+396.844094023 I0413 17:52:18.505794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:18.505870 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:18.505886 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:18.505891 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 17:52:18.50588507 +0000 UTC m=+396.856784493 I0413 17:52:18.505970 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 17:52:18.505962232 +0000 UTC m=+396.856861655 I0413 17:52:18.630763 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:18.638590 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-wtnzm" condition "Approved" to 2026-04-13 17:52:18.638567621 +0000 UTC m=+396.989467054 I0413 17:52:18.649521 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:18.668223 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-wtnzm" condition "Ready" to 2026-04-13 17:52:18.668209881 +0000 UTC m=+397.019109294 I0413 17:52:18.672199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-2fxsh" condition "Approved" to 2026-04-13 17:52:18.672193696 +0000 UTC m=+397.023093119 I0413 17:52:18.691762 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ssfmp" condition "Approved" to 2026-04-13 17:52:18.691741541 +0000 UTC m=+397.042641004 I0413 17:52:18.693041 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-2fxsh" condition "Ready" to 2026-04-13 17:52:18.693032209 +0000 UTC m=+397.043931642 I0413 17:52:18.702207 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:18.702187984 +0000 UTC m=+397.053087417 I0413 17:52:18.855011 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ssfmp" condition "Ready" to 2026-04-13 17:52:18.854987653 +0000 UTC m=+397.205887116 I0413 17:52:19.051450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:19.051967 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:19.05195841 +0000 UTC m=+397.402857843 I0413 17:52:19.200525 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:19.200499018 +0000 UTC m=+397.551398481 I0413 17:52:19.517269 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:19.517249782 +0000 UTC m=+397.868149215 I0413 17:52:19.596675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:19.597379 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:19.597350396 +0000 UTC m=+397.948249829 I0413 17:52:19.652695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:19.696170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:19.797893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:19.798534 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:19.798525233 +0000 UTC m=+398.149424666 I0413 17:52:20.146806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:20.249529 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.141844 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:24.141890 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" condition "Ready" to 2026-04-13 17:52:24.141866218 +0000 UTC m=+402.492765671 I0413 17:52:24.141912 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" condition "Issuing" to 2026-04-13 17:52:24.141894798 +0000 UTC m=+402.492794261 I0413 17:52:24.160995 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-47j6b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.161156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:24.161210 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" condition "Issuing" to 2026-04-13 17:52:24.161198569 +0000 UTC m=+402.512098032 I0413 17:52:24.475465 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-47j6b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.483768 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-47j6b-4lmxp" condition "Approved" to 2026-04-13 17:52:24.483747327 +0000 UTC m=+402.834646750 I0413 17:52:24.510442 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-47j6b-4lmxp" condition "Ready" to 2026-04-13 17:52:24.510421563 +0000 UTC m=+402.861321016 I0413 17:52:24.543881 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:24.543865834 +0000 UTC m=+402.894765267 I0413 17:52:24.569520 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-47j6b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.569863 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:24.569855808 +0000 UTC m=+402.920755241 I0413 17:52:24.573708 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-47j6b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.583428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-47j6b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.583920 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-47j6b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:24.584661 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-47j6b-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:24.584639882 +0000 UTC m=+402.935539315 I0413 17:52:38.016244 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-13 17:52:38.016221926 +0000 UTC m=+416.367121389 I0413 17:52:38.017231 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:38.017296 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 17:52:38.017281518 +0000 UTC m=+416.368180981 I0413 17:52:38.033276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:38.033370 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:52:38.033401 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 17:52:38.033392351 +0000 UTC m=+416.384291814 I0413 17:52:38.187327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:38.199616 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4fphw" condition "Approved" to 2026-04-13 17:52:38.199600384 +0000 UTC m=+416.550499847 I0413 17:52:38.222189 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4fphw" condition "Ready" to 2026-04-13 17:52:38.222175444 +0000 UTC m=+416.573074877 I0413 17:52:38.252797 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:38.252775735 +0000 UTC m=+416.603675168 I0413 17:52:38.278264 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:38.278581 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:38.278570603 +0000 UTC m=+416.629470036 I0413 17:52:38.294880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:52:38.295593 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:52:38.295577784 +0000 UTC m=+416.646477237 I0413 17:52:38.298996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:54:00.697617 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:54:00.697654 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 17:54:00.69764541 +0000 UTC m=+499.048544843 I0413 17:54:00.698013 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-13 17:54:00.698008528 +0000 UTC m=+499.048907961 I0413 17:54:00.714396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:54:00.714499 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-13 17:54:00.714488759 +0000 UTC m=+499.065388232 I0413 17:54:00.860107 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:54:00.896975 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-5jvzd" condition "Approved" to 2026-04-13 17:54:00.896957353 +0000 UTC m=+499.247856776 I0413 17:54:00.919569 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-5jvzd" condition "Ready" to 2026-04-13 17:54:00.919553244 +0000 UTC m=+499.270452677 I0413 17:54:00.948909 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:54:00.948894229 +0000 UTC m=+499.299793662 I0413 17:54:00.970358 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:54:00.970797 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:54:00.970786275 +0000 UTC m=+499.321685708 I0413 17:54:00.992315 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:54:00.992869 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:54:00.992857295 +0000 UTC m=+499.343756758