I0505 11:23:05.661438 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 11:23:05.661533 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 11:23:05.661610 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 11:23:05.668215 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 11:23:05.668727 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 11:23:05.668747 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 11:23:05.668833 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 11:23:05.671636 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 11:23:05.683735 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 11:23:05.688583 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 11:23:05.693279 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 11:23:05.697646 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 11:23:05.697719 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 11:23:05.702161 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 11:23:05.705928 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 11:23:05.707734 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 11:23:05.707783 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 11:23:05.709980 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 11:23:05.711847 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 11:23:05.716715 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 11:23:05.718898 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 11:23:05.718980 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 11:23:05.721410 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 11:23:05.721468 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 11:23:05.724058 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 11:23:05.726585 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 11:23:05.729078 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 11:23:05.730922 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 11:23:05.732688 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 11:23:05.734443 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 11:23:05.734474 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 11:23:05.734614 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 11:23:05.738675 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 11:23:05.740986 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.741014 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.741517 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.741709 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.761238 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.781224 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.795060 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.814537 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.829016 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:05.837271 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 11:23:16.725843 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 11:23:16.725821377 +0000 UTC m=+11.095570187 I0505 11:23:17.411715 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 11:23:17.411699221 +0000 UTC m=+11.781448021 I0505 11:23:17.411919 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:23:17.411991 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 11:23:17.411981707 +0000 UTC m=+11.781730507 I0505 11:23:17.426067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:17.426156 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 11:23:17.426147046 +0000 UTC m=+11.795895816 E0505 11:23:17.426298 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:23:17.426380 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 11:23:17.42637013 +0000 UTC m=+11.796118930 E0505 11:23:17.426448 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:23:17.433705 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 11:23:17.434082 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:23:17.434169 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:23:17.434213 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 11:23:17.440538 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:17.459750 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-bfwr9" condition "Approved" to 2026-05-05 11:23:17.459739833 +0000 UTC m=+11.829488603 I0505 11:23:17.473707 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-bfwr9" condition "Ready" to 2026-05-05 11:23:17.473687107 +0000 UTC m=+11.843435907 I0505 11:23:17.496379 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:17.496359177 +0000 UTC m=+11.866107967 I0505 11:23:17.515967 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:17.516282 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:17.516273874 +0000 UTC m=+11.886022644 I0505 11:23:17.521776 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:17.530071 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:22.434141 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:22.434127944 +0000 UTC m=+16.803876734 I0505 11:23:43.605489 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:23:43.605575 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 11:23:43.605563166 +0000 UTC m=+37.975311976 I0505 11:23:43.605773 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 11:23:43.60573913 +0000 UTC m=+37.975487910 I0505 11:23:43.616806 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 11:23:43.61679177 +0000 UTC m=+37.986540520 I0505 11:23:43.627602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:43.627668 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:23:43.627701 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 11:23:43.627695046 +0000 UTC m=+37.997443816 I0505 11:23:43.797153 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-c8thv" condition "Approved" to 2026-05-05 11:23:43.797136968 +0000 UTC m=+38.166885768 I0505 11:23:43.825419 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-c8thv" condition "Ready" to 2026-05-05 11:23:43.825403675 +0000 UTC m=+38.195152475 I0505 11:23:43.857314 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:43.857300549 +0000 UTC m=+38.227049349 I0505 11:23:43.884930 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:43.885371 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:43.885362631 +0000 UTC m=+38.255111431 I0505 11:23:43.901059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:23:43.901499 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:23:43.901488637 +0000 UTC m=+38.271237437 I0505 11:23:43.902816 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:25.386979 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-05 11:25:25.386935482 +0000 UTC m=+139.756684302 I0505 11:25:25.387015 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:25:25.387434 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-05 11:25:25.38740186 +0000 UTC m=+139.757150660 E0505 11:25:25.401638 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 11:25:25.401777 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-05 11:25:25.401765538 +0000 UTC m=+139.771514328 I0505 11:25:25.401812 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 11:25:25.406059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:25.406140 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:25:25.406200 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-05 11:25:25.40615904 +0000 UTC m=+139.775907810 E0505 11:25:25.413310 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0505 11:25:25.413466 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-05 11:25:25.413456227 +0000 UTC m=+139.783205017 E0505 11:25:25.413604 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 11:25:25.413579 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:25:25.413699 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-05 11:25:25.413685911 +0000 UTC m=+139.783434701 I0505 11:25:25.413642 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0505 11:25:25.413847 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0505 11:25:25.431389 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:25.431547 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:25:25.431609 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-05 11:25:25.431599985 +0000 UTC m=+139.801348775 I0505 11:25:25.635818 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-qsz8f" condition "Approved" to 2026-05-05 11:25:25.635800531 +0000 UTC m=+140.005549321 I0505 11:25:25.652251 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-qsz8f" condition "Ready" to 2026-05-05 11:25:25.652234529 +0000 UTC m=+140.021983299 I0505 11:25:25.760489 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-r8tgw" condition "Approved" to 2026-05-05 11:25:25.760468911 +0000 UTC m=+140.130217701 I0505 11:25:25.791994 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-r8tgw" condition "Ready" to 2026-05-05 11:25:25.79197817 +0000 UTC m=+140.161726970 I0505 11:25:25.821467 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:25.821453251 +0000 UTC m=+140.191202021 I0505 11:25:25.841373 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:25.893965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:30.414710 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:30.41470054 +0000 UTC m=+144.784449310 I0505 11:25:30.426918 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-qsz8f" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:30.426909038 +0000 UTC m=+144.796657788 I0505 11:25:30.454477 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:30.454461433 +0000 UTC m=+144.824210223 I0505 11:25:30.479186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:25:30.479664 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:25:30.479652964 +0000 UTC m=+144.849401764 I0505 11:25:30.497492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:27:56.801799 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-73.nip.io-tls" condition "Ready" to 2026-05-05 11:27:56.801767066 +0000 UTC m=+291.171515866 I0505 11:27:56.802197 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-73.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:27:56.802227 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-73.nip.io-tls" condition "Issuing" to 2026-05-05 11:27:56.802221354 +0000 UTC m=+291.171970154 I0505 11:27:56.819793 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-73.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-73.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:27:56.819833 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-73.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:27:56.819844 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-73.nip.io-tls" condition "Issuing" to 2026-05-05 11:27:56.819840433 +0000 UTC m=+291.189589203 I0505 11:27:57.019600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-73.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-73.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:27:57.027079 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-73.nip.io-tls-hgj46" condition "Approved" to 2026-05-05 11:27:57.027064584 +0000 UTC m=+291.396813384 I0505 11:27:57.050164 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-73.nip.io-tls-hgj46" condition "Ready" to 2026-05-05 11:27:57.050155844 +0000 UTC m=+291.419904604 I0505 11:27:57.074983 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-73.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:27:57.074972296 +0000 UTC m=+291.444721066 I0505 11:27:57.091062 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-73.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-73.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.485898 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:29:06.485852142 +0000 UTC m=+360.855600942 I0505 11:29:06.485905 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:29:06.486329 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 11:29:06.486316072 +0000 UTC m=+360.856064862 E0505 11:29:06.497313 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:29:06.497366 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 11:29:06.497355829 +0000 UTC m=+360.867104629 E0505 11:29:06.497589 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 11:29:06.501507 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.501593 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:29:06.501582429 +0000 UTC m=+360.871331209 E0505 11:29:06.510236 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 11:29:06.510313 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:29:06.510345 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 11:29:06.510376 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 11:29:06.515599 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.515658 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:29:06.515651143 +0000 UTC m=+360.885399913 I0505 11:29:06.516132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-5d4q5" condition "Approved" to 2026-05-05 11:29:06.516124892 +0000 UTC m=+360.885873662 I0505 11:29:06.527011 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 11:29:06.527000206 +0000 UTC m=+360.896748976 I0505 11:29:06.528556 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-5d4q5" condition "Ready" to 2026-05-05 11:29:06.528540355 +0000 UTC m=+360.898289155 I0505 11:29:06.534663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.551787 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:06.551771061 +0000 UTC m=+360.921519851 I0505 11:29:06.568046 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.568301 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:06.568293242 +0000 UTC m=+360.938042002 I0505 11:29:06.578778 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:06.587032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:11.510913 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:11.510898931 +0000 UTC m=+365.880647721 I0505 11:29:47.929452 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 11:29:47.929407989 +0000 UTC m=+402.299156769 I0505 11:29:47.929740 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:29:47.929832 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 11:29:47.929824187 +0000 UTC m=+402.299572947 I0505 11:29:47.936123 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:29:47.936167 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 11:29:47.936153846 +0000 UTC m=+402.305902626 I0505 11:29:47.936216 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:29:47.936243 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 11:29:47.936239248 +0000 UTC m=+402.305987998 I0505 11:29:47.936172 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 11:29:47.936163107 +0000 UTC m=+402.305911867 I0505 11:29:47.936396 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 11:29:47.936391391 +0000 UTC m=+402.306140151 I0505 11:29:47.957513 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:47.957652 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 11:29:47.957644641 +0000 UTC m=+402.327393411 I0505 11:29:47.957812 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:47.960594 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 11:29:47.960575346 +0000 UTC m=+402.330324136 I0505 11:29:47.968406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:47.968467 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 11:29:47.968460196 +0000 UTC m=+402.338208956 I0505 11:29:48.063072 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.122361 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rh97b" condition "Approved" to 2026-05-05 11:29:48.122350108 +0000 UTC m=+402.492098858 I0505 11:29:48.127366 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.145776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rh97b" condition "Ready" to 2026-05-05 11:29:48.14576366 +0000 UTC m=+402.515512430 I0505 11:29:48.158241 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lnbdz" condition "Approved" to 2026-05-05 11:29:48.158229645 +0000 UTC m=+402.527978415 I0505 11:29:48.177166 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:48.177152271 +0000 UTC m=+402.546901041 I0505 11:29:48.180770 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lnbdz" condition "Ready" to 2026-05-05 11:29:48.18075056 +0000 UTC m=+402.550499350 I0505 11:29:48.197742 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.198280 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:48.198269599 +0000 UTC m=+402.568018399 I0505 11:29:48.227002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.276833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.328739 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:48.328720229 +0000 UTC m=+402.698469029 E0505 11:29:48.371670 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-xxzkt\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0505 11:29:48.530459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.530919 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:48.530911873 +0000 UTC m=+402.900660633 I0505 11:29:48.626831 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.931901 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:48.981464 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-g9tcm" condition "Approved" to 2026-05-05 11:29:48.981451428 +0000 UTC m=+403.351200178 I0505 11:29:49.149473 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-g9tcm" condition "Ready" to 2026-05-05 11:29:49.149446517 +0000 UTC m=+403.519195307 I0505 11:29:49.577454 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:49.577438818 +0000 UTC m=+403.947187588 I0505 11:29:49.679973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:49.680462 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:49.680452362 +0000 UTC m=+404.050201132 I0505 11:29:49.875686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:55.424091 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:29:55.424139 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" condition "Issuing" to 2026-05-05 11:29:55.424127388 +0000 UTC m=+409.793876178 I0505 11:29:55.424720 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" condition "Ready" to 2026-05-05 11:29:55.424712019 +0000 UTC m=+409.794460809 I0505 11:29:55.442900 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:55.442952 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" condition "Ready" to 2026-05-05 11:29:55.442945613 +0000 UTC m=+409.812694373 I0505 11:29:55.963199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:56.238744 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ngjn7-nvj4c" condition "Approved" to 2026-05-05 11:29:56.238723911 +0000 UTC m=+410.608472701 I0505 11:29:56.256323 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ngjn7-nvj4c" condition "Ready" to 2026-05-05 11:29:56.256309502 +0000 UTC m=+410.626058262 I0505 11:29:56.279122 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:56.279101802 +0000 UTC m=+410.648850592 I0505 11:29:56.298010 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:29:56.298383 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:29:56.298359345 +0000 UTC m=+410.668108105 I0505 11:29:56.323454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ngjn7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:30:15.407125 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:30:15.407171 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 11:30:15.407159429 +0000 UTC m=+429.776908189 I0505 11:30:15.407288 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 11:30:15.407279881 +0000 UTC m=+429.777028641 I0505 11:30:15.423768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:30:15.423960 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:30:15.423989 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 11:30:15.423982096 +0000 UTC m=+429.793730896 I0505 11:30:15.794439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-br8t8" condition "Approved" to 2026-05-05 11:30:15.794401894 +0000 UTC m=+430.164150684 I0505 11:30:15.814569 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-br8t8" condition "Ready" to 2026-05-05 11:30:15.814555664 +0000 UTC m=+430.184304434 I0505 11:30:15.845320 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:30:15.845294774 +0000 UTC m=+430.215043544 I0505 11:30:15.864041 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:30:15.864883 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:30:15.864865633 +0000 UTC m=+430.234614433 I0505 11:30:15.886774 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:30:15.889067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:30:15.889417 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:30:15.889405616 +0000 UTC m=+430.259154386 I0505 11:33:34.236813 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 11:33:34.23677589 +0000 UTC m=+628.606524660 I0505 11:33:34.236891 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:33:34.236935 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 11:33:34.236930553 +0000 UTC m=+628.606679323 I0505 11:33:34.252563 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:33:34.252797 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:33:34.252825 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 11:33:34.252819032 +0000 UTC m=+628.622567792 I0505 11:33:34.503503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:33:34.508346 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-zb28s" condition "Approved" to 2026-05-05 11:33:34.508338441 +0000 UTC m=+628.878087211 I0505 11:33:34.527823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-zb28s" condition "Ready" to 2026-05-05 11:33:34.527797948 +0000 UTC m=+628.897546738 I0505 11:33:34.561350 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:33:34.56133319 +0000 UTC m=+628.931081990 I0505 11:33:34.596052 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:33:34.596365 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:33:34.59635845 +0000 UTC m=+628.966107220 I0505 11:33:34.607932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:33:34.609842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:33:34.610161 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:33:34.610152961 +0000 UTC m=+628.979901731 I0505 11:35:45.350825 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-05 11:35:45.350786177 +0000 UTC m=+759.720534977 I0505 11:35:45.351339 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:35:45.351367 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-05 11:35:45.351359987 +0000 UTC m=+759.721108787 I0505 11:35:45.368639 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:35:45.368835 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:35:45.368937 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-05 11:35:45.368851808 +0000 UTC m=+759.738600578 I0505 11:35:45.602503 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-flf5p" condition "Approved" to 2026-05-05 11:35:45.602493552 +0000 UTC m=+759.972242322 I0505 11:35:45.629560 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-flf5p" condition "Ready" to 2026-05-05 11:35:45.629549852 +0000 UTC m=+759.999298622 I0505 11:35:45.656651 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:35:45.656639642 +0000 UTC m=+760.026388412 I0505 11:35:45.672184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:36:47.712090 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-05 11:36:47.712067202 +0000 UTC m=+822.081815962 I0505 11:36:47.712545 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:36:47.712595 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-05 11:36:47.712589083 +0000 UTC m=+822.082337853 I0505 11:36:47.727728 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:36:47.727796 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:36:47.727809 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-05 11:36:47.72780402 +0000 UTC m=+822.097552770 I0505 11:36:48.091535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:36:48.092382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-b2m4l" condition "Approved" to 2026-05-05 11:36:48.092365653 +0000 UTC m=+822.462114443 I0505 11:36:48.123249 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-b2m4l" condition "Ready" to 2026-05-05 11:36:48.123235655 +0000 UTC m=+822.492984425 I0505 11:36:48.162238 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:36:48.16222297 +0000 UTC m=+822.531971740 I0505 11:36:48.181804 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:36:48.231855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:39:46.872356 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-05 11:39:46.872323081 +0000 UTC m=+1001.242071871 I0505 11:39:46.872760 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:39:46.872900 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-05 11:39:46.872881881 +0000 UTC m=+1001.242630671 I0505 11:39:46.891677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:39:46.891864 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:39:46.891945 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-05 11:39:46.89189018 +0000 UTC m=+1001.261638970 I0505 11:39:47.161720 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-kl277" condition "Approved" to 2026-05-05 11:39:47.161703197 +0000 UTC m=+1001.531451947 I0505 11:39:47.184917 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-kl277" condition "Ready" to 2026-05-05 11:39:47.184900454 +0000 UTC m=+1001.554649224 I0505 11:39:47.219241 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:39:47.219222122 +0000 UTC m=+1001.588970892 I0505 11:39:47.245562 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:46:00.327156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:46:00.327269 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-05 11:46:00.327236944 +0000 UTC m=+1374.696985734 I0505 11:46:00.327434 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-05 11:46:00.327408597 +0000 UTC m=+1374.697157367 I0505 11:46:00.345671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:46:00.345770 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:46:00.345797 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-05 11:46:00.345788804 +0000 UTC m=+1374.715537574 I0505 11:46:00.623191 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-zjxpw" condition "Approved" to 2026-05-05 11:46:00.623172974 +0000 UTC m=+1374.992921764 I0505 11:46:00.645913 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-zjxpw" condition "Ready" to 2026-05-05 11:46:00.645897923 +0000 UTC m=+1375.015646723 I0505 11:46:00.675495 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:46:00.675476081 +0000 UTC m=+1375.045224851 I0505 11:46:00.698157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:46:00.698665 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:46:00.698653807 +0000 UTC m=+1375.068402567 I0505 11:46:00.726775 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:47:28.549163 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-05 11:47:28.549131464 +0000 UTC m=+1462.918880264 I0505 11:47:28.549622 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:47:28.549699 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-05 11:47:28.549691844 +0000 UTC m=+1462.919440614 I0505 11:47:28.567500 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:47:28.567659 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 11:47:28.567703 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-05 11:47:28.567688364 +0000 UTC m=+1462.937437174 I0505 11:47:28.849446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:47:28.854705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-vkklr" condition "Approved" to 2026-05-05 11:47:28.854671715 +0000 UTC m=+1463.224420485 I0505 11:47:28.874513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-vkklr" condition "Ready" to 2026-05-05 11:47:28.874502639 +0000 UTC m=+1463.244251409 I0505 11:47:28.911026 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:47:28.910986736 +0000 UTC m=+1463.280735506 I0505 11:47:28.930571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 11:47:28.931106 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 11:47:28.931095615 +0000 UTC m=+1463.300844415 I0505 11:47:28.952806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again"