I0505 16:53:15.674187 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 16:53:15.674292 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 16:53:15.674465 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 16:53:15.678079 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 16:53:15.678437 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 16:53:15.678505 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 16:53:15.678528 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 16:53:15.680905 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 16:53:15.712649 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 16:53:15.719882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 16:53:15.727075 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 16:53:15.729633 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 16:53:15.731373 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 16:53:15.733519 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 16:53:15.735366 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 16:53:15.737506 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 16:53:15.737605 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 16:53:15.741934 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 16:53:15.747004 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 16:53:15.750245 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 16:53:15.751888 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 16:53:15.751903 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 16:53:15.751911 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 16:53:15.751999 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 16:53:15.753611 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 16:53:15.753671 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 16:53:15.755513 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 16:53:15.757245 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 16:53:15.757357 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 16:53:15.759136 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 16:53:15.760686 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 16:53:15.763437 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 16:53:15.766391 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 16:53:15.769117 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.769658 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.770989 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.793240 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.801773 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.815816 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.831726 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.853350 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.855460 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:15.868922 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 16:53:27.550411 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 16:53:27.550387759 +0000 UTC m=+11.908663893 I0505 16:53:28.274521 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 16:53:28.274506925 +0000 UTC m=+12.632783049 I0505 16:53:28.274978 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:53:28.275042 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 16:53:28.275024132 +0000 UTC m=+12.633300276 I0505 16:53:28.303077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:28.303113 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:53:28.303123 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 16:53:28.303119196 +0000 UTC m=+12.661395310 E0505 16:53:28.317237 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 16:53:28.317279 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 16:53:28.317274114 +0000 UTC m=+12.675550228 E0505 16:53:28.317293 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:53:28.340118 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 16:53:28.340209 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:53:28.340235 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:53:28.340262 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 16:53:28.360581 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-swbvl" condition "Approved" to 2026-05-05 16:53:28.360571701 +0000 UTC m=+12.718847825 I0505 16:53:28.375164 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-swbvl" condition "Ready" to 2026-05-05 16:53:28.375148986 +0000 UTC m=+12.733425130 I0505 16:53:28.407439 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:53:28.407429315 +0000 UTC m=+12.765705439 I0505 16:53:28.421397 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:28.421634 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:53:28.421629224 +0000 UTC m=+12.779905348 I0505 16:53:28.429701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:28.437269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:33.340677 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:53:33.340520255 +0000 UTC m=+17.698796379 I0505 16:53:55.054520 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 16:53:55.054482868 +0000 UTC m=+39.412758992 I0505 16:53:55.054839 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:53:55.054858 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 16:53:55.054854728 +0000 UTC m=+39.413130862 I0505 16:53:55.080461 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 16:53:55.080447349 +0000 UTC m=+39.438723483 I0505 16:53:55.081406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:55.081569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:53:55.081587 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 16:53:55.081583629 +0000 UTC m=+39.439859743 I0505 16:53:55.400062 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fgqlf" condition "Approved" to 2026-05-05 16:53:55.400047295 +0000 UTC m=+39.758323419 I0505 16:53:55.433115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fgqlf" condition "Ready" to 2026-05-05 16:53:55.433103031 +0000 UTC m=+39.791379155 I0505 16:53:55.465701 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:53:55.465687965 +0000 UTC m=+39.823964089 I0505 16:53:55.486362 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:55.486801 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:53:55.486795699 +0000 UTC m=+39.845071813 I0505 16:53:55.506089 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:53:55.506578 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:53:55.506569247 +0000 UTC m=+39.864845371 I0505 16:57:56.914838 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-195.nip.io-tls" condition "Ready" to 2026-05-05 16:57:56.91479881 +0000 UTC m=+281.273074954 I0505 16:57:56.915322 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-195.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:57:56.915359 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-195.nip.io-tls" condition "Issuing" to 2026-05-05 16:57:56.915349548 +0000 UTC m=+281.273625692 I0505 16:57:56.932312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-195.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-195.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:57:56.932523 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-195.nip.io-tls" condition "Ready" to 2026-05-05 16:57:56.932514067 +0000 UTC m=+281.290790191 I0505 16:57:57.082081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-195.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-195.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:57:57.109553 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-195.nip.io-tls-hwdkn" condition "Approved" to 2026-05-05 16:57:57.109537474 +0000 UTC m=+281.467813598 I0505 16:57:57.136981 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-195.nip.io-tls-hwdkn" condition "Ready" to 2026-05-05 16:57:57.136971592 +0000 UTC m=+281.495247716 I0505 16:57:57.163669 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-195.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:57:57.163653871 +0000 UTC m=+281.521929995 I0505 16:57:57.183765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-195.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-195.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:00.644704 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:00.644765 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 16:59:00.644747425 +0000 UTC m=+345.003023549 I0505 16:59:00.645321 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 16:59:00.645298237 +0000 UTC m=+345.003574391 I0505 16:59:00.661483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:00.661602 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 16:59:00.661591598 +0000 UTC m=+345.019867722 E0505 16:59:00.663221 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 16:59:00.663255 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 16:59:00.663247481 +0000 UTC m=+345.021523585 E0505 16:59:00.663299 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:59:00.676573 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 16:59:00.677010 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:59:00.677061 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 16:59:00.677114 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 16:59:00.680581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:00.701528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kz7bw" condition "Approved" to 2026-05-05 16:59:00.701511529 +0000 UTC m=+345.059787673 I0505 16:59:00.713916 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kz7bw" condition "Ready" to 2026-05-05 16:59:00.71390339 +0000 UTC m=+345.072179514 I0505 16:59:00.741977 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:00.74195989 +0000 UTC m=+345.100236014 I0505 16:59:00.756535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:00.756867 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:00.756858533 +0000 UTC m=+345.115134647 I0505 16:59:00.773891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:00.774175 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:00.774165865 +0000 UTC m=+345.132441979 I0505 16:59:05.677419 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:05.677403316 +0000 UTC m=+350.035679460 I0505 16:59:46.390504 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:46.390583 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 16:59:46.390552149 +0000 UTC m=+390.748828273 I0505 16:59:46.390893 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 16:59:46.390889515 +0000 UTC m=+390.749165629 I0505 16:59:46.402621 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 16:59:46.402602925 +0000 UTC m=+390.760879049 I0505 16:59:46.402703 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:46.402966 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 16:59:46.402959291 +0000 UTC m=+390.761235405 I0505 16:59:46.417770 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 16:59:46.417743399 +0000 UTC m=+390.776019533 I0505 16:59:46.419598 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:46.419632 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 16:59:46.419626505 +0000 UTC m=+390.777902629 I0505 16:59:46.437533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.437618 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 16:59:46.437609722 +0000 UTC m=+390.795885846 I0505 16:59:46.479527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.479579 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:46.479580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.479600 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 16:59:46.479593831 +0000 UTC m=+390.837869955 I0505 16:59:46.479640 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 16:59:46.479630522 +0000 UTC m=+390.837906636 I0505 16:59:46.683870 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-n9ts7" condition "Approved" to 2026-05-05 16:59:46.683854759 +0000 UTC m=+391.042130883 I0505 16:59:46.705555 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-n9ts7" condition "Ready" to 2026-05-05 16:59:46.705541797 +0000 UTC m=+391.063817911 I0505 16:59:46.773433 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:46.773461 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 16:59:46.773453793 +0000 UTC m=+391.131729897 I0505 16:59:46.788030 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:46.788019477 +0000 UTC m=+391.146295591 I0505 16:59:46.816895 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.819654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.820020 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:46.820012349 +0000 UTC m=+391.178288463 I0505 16:59:46.824448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.841772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.879246 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zlgmw" condition "Approved" to 2026-05-05 16:59:46.879227241 +0000 UTC m=+391.237503355 I0505 16:59:46.897048 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zlgmw" condition "Ready" to 2026-05-05 16:59:46.897036215 +0000 UTC m=+391.255312329 I0505 16:59:46.945740 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:46.945723951 +0000 UTC m=+391.304000055 I0505 16:59:46.966716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:46.966888 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:46.966882638 +0000 UTC m=+391.325158752 I0505 16:59:47.050913 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:47.361378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:47.395610 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fzfwz" condition "Approved" to 2026-05-05 16:59:47.395585063 +0000 UTC m=+391.753861187 I0505 16:59:47.539912 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fzfwz" condition "Ready" to 2026-05-05 16:59:47.539896771 +0000 UTC m=+391.898172895 I0505 16:59:47.941740 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:47.941728501 +0000 UTC m=+392.300004615 I0505 16:59:48.092527 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:48.092511318 +0000 UTC m=+392.450787442 I0505 16:59:48.143882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:48.183948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:54.361617 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" condition "Ready" to 2026-05-05 16:59:54.361595542 +0000 UTC m=+398.719871666 I0505 16:59:54.361649 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:54.361700 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" condition "Issuing" to 2026-05-05 16:59:54.361688254 +0000 UTC m=+398.719964408 I0505 16:59:54.379847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:54.380018 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 16:59:54.380041 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" condition "Issuing" to 2026-05-05 16:59:54.380031235 +0000 UTC m=+398.738307359 I0505 16:59:54.560738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kd2cr-mmfpg" condition "Approved" to 2026-05-05 16:59:54.560727312 +0000 UTC m=+398.919003426 I0505 16:59:54.587656 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kd2cr-mmfpg" condition "Ready" to 2026-05-05 16:59:54.587644752 +0000 UTC m=+398.945920876 I0505 16:59:54.626767 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:54.626753778 +0000 UTC m=+398.985029892 I0505 16:59:54.647854 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 16:59:54.648271 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 16:59:54.648259077 +0000 UTC m=+399.006535201 I0505 16:59:54.668536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kd2cr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:07.102566 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 17:00:07.102511604 +0000 UTC m=+411.460787718 I0505 17:00:07.103286 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:00:07.103303 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 17:00:07.103299898 +0000 UTC m=+411.461576012 I0505 17:00:07.125382 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:07.125441 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:00:07.125456 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 17:00:07.125448843 +0000 UTC m=+411.483724957 I0505 17:00:07.389240 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2z565" condition "Approved" to 2026-05-05 17:00:07.389225139 +0000 UTC m=+411.747501263 I0505 17:00:07.424772 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2z565" condition "Ready" to 2026-05-05 17:00:07.424757718 +0000 UTC m=+411.783033842 I0505 17:00:07.491710 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:00:07.49169597 +0000 UTC m=+411.849972084 I0505 17:00:07.514577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:00:07.514832 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:00:07.514822642 +0000 UTC m=+411.873098756 I0505 17:00:07.559983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:03:27.428611 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 17:03:27.428589159 +0000 UTC m=+611.786865313 I0505 17:03:27.429398 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:03:27.429470 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 17:03:27.429451783 +0000 UTC m=+611.787727907 I0505 17:03:27.451187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:03:27.451286 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:03:27.451313 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 17:03:27.451304781 +0000 UTC m=+611.809580895 I0505 17:03:27.600613 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-85ff9" condition "Approved" to 2026-05-05 17:03:27.600600924 +0000 UTC m=+611.958877038 I0505 17:03:27.626010 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-85ff9" condition "Ready" to 2026-05-05 17:03:27.625994458 +0000 UTC m=+611.984270582 I0505 17:03:27.662386 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:03:27.662364946 +0000 UTC m=+612.020641080 I0505 17:03:27.688715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:03:27.693840 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:03:27.693831366 +0000 UTC m=+612.052107480 I0505 17:03:27.712661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:03:27.713212 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:03:27.713645 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:03:27.713635521 +0000 UTC m=+612.071911645 I0505 17:04:08.681393 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 17:04:08.681372534 +0000 UTC m=+653.039648648 I0505 17:04:08.681765 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 17:04:08.682135 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 17:04:08.682125436 +0000 UTC m=+653.040401560 I0505 17:04:08.701960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:04:08.702027 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 17:04:08.702020578 +0000 UTC m=+653.060296692 I0505 17:04:08.902426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:04:08.937987 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-dldgb" condition "Approved" to 2026-05-05 17:04:08.937972459 +0000 UTC m=+653.296248593 I0505 17:04:08.964036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-dldgb" condition "Ready" to 2026-05-05 17:04:08.964026429 +0000 UTC m=+653.322302543 I0505 17:04:09.001294 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:04:09.001280955 +0000 UTC m=+653.359557079 I0505 17:04:09.017737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 17:04:09.017993 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 17:04:09.017987388 +0000 UTC m=+653.376263502 I0505 17:04:09.039715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"