I0504 11:25:07.904802 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0504 11:25:07.904923 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0504 11:25:07.904999 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0504 11:25:07.912288 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0504 11:25:07.912852 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0504 11:25:07.913063 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0504 11:25:07.913074 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0504 11:25:07.916577 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0504 11:25:07.932307 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0504 11:25:07.937671 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0504 11:25:07.941719 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0504 11:25:07.946905 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0504 11:25:07.946983 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0504 11:25:07.950271 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0504 11:25:07.952497 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0504 11:25:07.954814 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0504 11:25:07.956997 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0504 11:25:07.958738 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0504 11:25:07.960573 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0504 11:25:07.960622 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0504 11:25:07.964281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0504 11:25:07.964306 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0504 11:25:07.965035 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0504 11:25:07.968858 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0504 11:25:07.968892 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0504 11:25:07.968953 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0504 11:25:07.971581 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0504 11:25:07.974098 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0504 11:25:07.976447 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0504 11:25:07.978257 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0504 11:25:07.980118 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0504 11:25:07.982042 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0504 11:25:07.984154 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0504 11:25:07.990117 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.991110 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.991145 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.991626 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.991939 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.992363 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.992754 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.992881 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:07.994374 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:08.078945 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0504 11:25:18.330583 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-04 11:25:18.330569986 +0000 UTC m=+10.458168814 I0504 11:25:19.059306 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:25:19.059362 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-04 11:25:19.059351434 +0000 UTC m=+11.186950272 I0504 11:25:19.060903 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-04 11:25:19.060893981 +0000 UTC m=+11.188492849 E0504 11:25:19.076053 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 11:25:19.076130 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-04 11:25:19.076119009 +0000 UTC m=+11.203717857 E0504 11:25:19.076161 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 11:25:19.079223 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:25:19.079310 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:25:19.079338 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-04 11:25:19.079332623 +0000 UTC m=+11.206931491 E0504 11:25:19.087770 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0504 11:25:19.087896 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 11:25:19.087946 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 11:25:19.088131 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0504 11:25:19.117516 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:25:19.123472 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-xcl4n" condition "Approved" to 2026-05-04 11:25:19.123452471 +0000 UTC m=+11.251051329 I0504 11:25:19.140833 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-xcl4n" condition "Ready" to 2026-05-04 11:25:19.140818879 +0000 UTC m=+11.268417717 I0504 11:25:19.161759 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:25:19.161744813 +0000 UTC m=+11.289343631 I0504 11:25:19.180007 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:25:19.219520 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:25:24.089044 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:25:24.089029387 +0000 UTC m=+16.216628245 I0504 11:25:46.267669 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-04 11:25:46.267640479 +0000 UTC m=+38.395239327 I0504 11:25:46.268190 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:25:46.268227 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-04 11:25:46.268222571 +0000 UTC m=+38.395821409 I0504 11:25:46.281902 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-04 11:25:46.281889963 +0000 UTC m=+38.409488801 I0504 11:25:46.290813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:25:46.290884 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:25:46.290911 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-04 11:25:46.290904003 +0000 UTC m=+38.418502831 I0504 11:25:46.545302 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tqsww" condition "Approved" to 2026-05-04 11:25:46.545282722 +0000 UTC m=+38.672881580 I0504 11:25:46.582797 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tqsww" condition "Ready" to 2026-05-04 11:25:46.5827832 +0000 UTC m=+38.710382058 I0504 11:25:46.624813 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:25:46.624802809 +0000 UTC m=+38.752401637 I0504 11:25:46.649593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:25:46.652135 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:25:46.652125361 +0000 UTC m=+38.779724199 I0504 11:25:46.693109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:30:12.978934 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-115.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:30:12.979009 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Issuing" to 2026-05-04 11:30:12.978997529 +0000 UTC m=+305.106596427 I0504 11:30:12.979215 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready" to 2026-05-04 11:30:12.979205575 +0000 UTC m=+305.106804413 I0504 11:30:13.004860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:30:13.004954 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready" to 2026-05-04 11:30:13.004946023 +0000 UTC m=+305.132544891 I0504 11:30:13.274704 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:30:13.319562 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-115.nip.io-tls-dfztx" condition "Approved" to 2026-05-04 11:30:13.319549224 +0000 UTC m=+305.447148092 I0504 11:30:13.365757 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-115.nip.io-tls-dfztx" condition "Ready" to 2026-05-04 11:30:13.365747208 +0000 UTC m=+305.493346036 I0504 11:30:13.411516 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:30:13.41150631 +0000 UTC m=+305.539105128 I0504 11:30:13.437241 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:30:13.437730 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-115.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:30:13.437723543 +0000 UTC m=+305.565322381 I0504 11:30:13.446575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:30:13.506884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-115.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-115.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:31:19.471941 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-04 11:31:19.471893286 +0000 UTC m=+371.599492154 I0504 11:31:19.472109 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:31:19.472250 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-04 11:31:19.472240233 +0000 UTC m=+371.599839061 E0504 11:31:19.508595 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 11:31:19.508667 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-04 11:31:19.50865572 +0000 UTC m=+371.636254578 E0504 11:31:19.508818 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0504 11:31:19.516177 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:31:19.516289 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:31:19.516314 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-04 11:31:19.516307615 +0000 UTC m=+371.643906453 E0504 11:31:19.527618 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0504 11:31:19.527731 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 11:31:19.527764 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0504 11:31:19.527806 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0504 11:31:19.552695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:31:19.555363 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9hwlb" condition "Approved" to 2026-05-04 11:31:19.555353743 +0000 UTC m=+371.682952581 I0504 11:31:19.566416 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9hwlb" condition "Ready" to 2026-05-04 11:31:19.566404928 +0000 UTC m=+371.694003756 I0504 11:31:19.590746 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:31:19.590727999 +0000 UTC m=+371.718326837 I0504 11:31:19.607190 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:31:19.607409 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:31:19.607400955 +0000 UTC m=+371.734999793 I0504 11:31:19.623147 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:31:19.623520 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:31:19.623512383 +0000 UTC m=+371.751111211 I0504 11:31:24.530221 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:31:24.530212038 +0000 UTC m=+376.657810866 I0504 11:32:07.394090 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-04 11:32:07.394071883 +0000 UTC m=+419.521670711 I0504 11:32:07.394142 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:07.396746 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-04 11:32:07.396735062 +0000 UTC m=+419.524333910 I0504 11:32:07.394097 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:07.397400 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-04 11:32:07.397172809 +0000 UTC m=+419.524771637 I0504 11:32:07.394509 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-04 11:32:07.394505581 +0000 UTC m=+419.522104409 I0504 11:32:07.394563 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:07.399055 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-04 11:32:07.399051375 +0000 UTC m=+419.526650203 I0504 11:32:07.394635 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-04 11:32:07.394629466 +0000 UTC m=+419.522228294 I0504 11:32:07.539058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:07.539202 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-04 11:32:07.539189259 +0000 UTC m=+419.666788127 I0504 11:32:07.542637 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:07.542800 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:07.542826 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-04 11:32:07.542817907 +0000 UTC m=+419.670416725 I0504 11:32:07.556770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:07.556880 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:07.556915 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-04 11:32:07.55690711 +0000 UTC m=+419.684505938 I0504 11:32:07.663648 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:07.719979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n29wp" condition "Approved" to 2026-05-04 11:32:07.719965187 +0000 UTC m=+419.847564015 I0504 11:32:07.758635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n29wp" condition "Ready" to 2026-05-04 11:32:07.75862257 +0000 UTC m=+419.886221398 I0504 11:32:07.800124 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:07.800107939 +0000 UTC m=+419.927706767 I0504 11:32:07.825816 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:07.899262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:08.008792 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-p4tdq" condition "Approved" to 2026-05-04 11:32:08.008772371 +0000 UTC m=+420.136371199 I0504 11:32:08.035816 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-p4tdq" condition "Ready" to 2026-05-04 11:32:08.035799577 +0000 UTC m=+420.163398445 I0504 11:32:08.074666 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:08.074607831 +0000 UTC m=+420.202206669 I0504 11:32:08.101255 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:08.101785 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:08.101776131 +0000 UTC m=+420.229374959 I0504 11:32:08.180687 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-kvg5w" condition "Approved" to 2026-05-04 11:32:08.18066482 +0000 UTC m=+420.308263678 I0504 11:32:08.201673 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-kvg5w" condition "Ready" to 2026-05-04 11:32:08.201661861 +0000 UTC m=+420.329260689 E0504 11:32:08.645177 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-96stp\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0504 11:32:08.762064 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:08.762050999 +0000 UTC m=+420.889649827 I0504 11:32:08.949726 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:08.950353 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:08.950344852 +0000 UTC m=+421.077943690 I0504 11:32:09.198264 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:09.249430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:15.954396 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" condition "Ready" to 2026-05-04 11:32:15.95433636 +0000 UTC m=+428.081935228 I0504 11:32:15.954709 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:15.954797 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" condition "Issuing" to 2026-05-04 11:32:15.954786658 +0000 UTC m=+428.082385496 I0504 11:32:15.975895 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:15.976024 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" condition "Ready" to 2026-05-04 11:32:15.976011545 +0000 UTC m=+428.103610403 I0504 11:32:16.186376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:16.233187 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-xjvqp-9s9nb" condition "Approved" to 2026-05-04 11:32:16.233172452 +0000 UTC m=+428.360771280 I0504 11:32:16.269997 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-xjvqp-9s9nb" condition "Ready" to 2026-05-04 11:32:16.269982079 +0000 UTC m=+428.397580917 I0504 11:32:16.308261 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:16.308247912 +0000 UTC m=+428.435846740 I0504 11:32:16.510203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:16.775628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-xjvqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:30.044488 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:30.044530 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-04 11:32:30.0445191 +0000 UTC m=+442.172117938 I0504 11:32:30.044578 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-04 11:32:30.044549011 +0000 UTC m=+442.172147859 I0504 11:32:30.075667 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:32:30.075798 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:32:30.075831 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-04 11:32:30.075823217 +0000 UTC m=+442.203422055 I0504 11:32:30.524951 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ffhhw" condition "Approved" to 2026-05-04 11:32:30.524934859 +0000 UTC m=+442.652533707 I0504 11:32:30.550964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ffhhw" condition "Ready" to 2026-05-04 11:32:30.55095163 +0000 UTC m=+442.678550448 I0504 11:32:30.601008 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:32:30.600990944 +0000 UTC m=+442.728589772 I0504 11:32:30.637014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:35:40.032511 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:35:40.032559 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-04 11:35:40.032549095 +0000 UTC m=+632.160147963 I0504 11:35:40.032595 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-04 11:35:40.032575565 +0000 UTC m=+632.160174423 I0504 11:35:40.047268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:35:40.047329 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:35:40.047343 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-04 11:35:40.047337378 +0000 UTC m=+632.174936206 I0504 11:35:40.195694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:35:40.205479 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7xfsh" condition "Approved" to 2026-05-04 11:35:40.205464513 +0000 UTC m=+632.333063341 I0504 11:35:40.226932 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-7xfsh" condition "Ready" to 2026-05-04 11:35:40.226920845 +0000 UTC m=+632.354519673 I0504 11:35:40.256550 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:35:40.256540581 +0000 UTC m=+632.384139409 I0504 11:35:40.275858 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:35:40.276147 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:35:40.276141399 +0000 UTC m=+632.403740237 I0504 11:35:40.289081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:35:40.302712 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:36:21.247766 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-04 11:36:21.247749866 +0000 UTC m=+673.375348704 I0504 11:36:21.247849 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:36:21.247888 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-04 11:36:21.247883989 +0000 UTC m=+673.375482827 I0504 11:36:21.270003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:36:21.270189 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0504 11:36:21.270250 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-04 11:36:21.270242719 +0000 UTC m=+673.397841557 I0504 11:36:21.668580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0504 11:36:21.675394 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-vrvgg" condition "Approved" to 2026-05-04 11:36:21.675383975 +0000 UTC m=+673.802982813 I0504 11:36:21.701361 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-vrvgg" condition "Ready" to 2026-05-04 11:36:21.701347457 +0000 UTC m=+673.828946295 I0504 11:36:21.731056 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-04 11:36:21.731045074 +0000 UTC m=+673.858643902 I0504 11:36:21.764139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"