I0420 12:00:59.627753 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0420 12:00:59.627873 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0420 12:00:59.628015 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0420 12:00:59.633268 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0420 12:00:59.633679 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0420 12:00:59.633746 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0420 12:00:59.633811 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0420 12:00:59.636254 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0420 12:00:59.652886 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0420 12:00:59.658006 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0420 12:00:59.663615 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0420 12:00:59.663647 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0420 12:00:59.663677 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0420 12:00:59.666774 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0420 12:00:59.669107 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0420 12:00:59.671449 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0420 12:00:59.673721 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0420 12:00:59.676087 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0420 12:00:59.678494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0420 12:00:59.683707 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0420 12:00:59.686492 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0420 12:00:59.688847 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0420 12:00:59.688904 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0420 12:00:59.688933 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0420 12:00:59.691152 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0420 12:00:59.692831 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0420 12:00:59.694669 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0420 12:00:59.696638 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0420 12:00:59.698635 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0420 12:00:59.698665 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0420 12:00:59.700412 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0420 12:00:59.700468 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0420 12:00:59.702496 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0420 12:00:59.708724 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.708776 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.709488 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.709503 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.710208 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.710480 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.711437 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.711988 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.712100 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:00:59.804248 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 12:01:21.274950 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-20 12:01:21.274935098 +0000 UTC m=+21.681543407 I0420 12:01:22.038182 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:22.038212 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 12:01:22.038206101 +0000 UTC m=+22.444814390 I0420 12:01:22.038442 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 12:01:22.038437535 +0000 UTC m=+22.445045814 E0420 12:01:22.054863 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 12:01:22.054942 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-20 12:01:22.054935487 +0000 UTC m=+22.461543776 E0420 12:01:22.054960 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 12:01:22.058854 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:22.058911 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:22.058928 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 12:01:22.058924292 +0000 UTC m=+22.465532581 E0420 12:01:22.066551 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0420 12:01:22.067036 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 12:01:22.067100 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 12:01:22.067154 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0420 12:01:22.110008 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-kfq28" condition "Approved" to 2026-04-20 12:01:22.109996231 +0000 UTC m=+22.516604530 I0420 12:01:22.122810 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-kfq28" condition "Ready" to 2026-04-20 12:01:22.12279647 +0000 UTC m=+22.529404759 I0420 12:01:22.168983 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:22.16897334 +0000 UTC m=+22.575581629 I0420 12:01:22.183123 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:27.067059 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:27.067049038 +0000 UTC m=+27.473657327 I0420 12:01:27.372493 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:27.372715 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 12:01:27.372698621 +0000 UTC m=+27.779306920 I0420 12:01:27.372536 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 12:01:27.372528789 +0000 UTC m=+27.779137078 I0420 12:01:27.399444 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-20 12:01:27.399427741 +0000 UTC m=+27.806036070 I0420 12:01:27.408303 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:27.409166 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:27.409199 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 12:01:27.409192725 +0000 UTC m=+27.815801014 I0420 12:01:27.748590 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:27.766076 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-x748v" condition "Approved" to 2026-04-20 12:01:27.766063657 +0000 UTC m=+28.172671956 I0420 12:01:27.791796 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-x748v" condition "Ready" to 2026-04-20 12:01:27.791786772 +0000 UTC m=+28.198395081 I0420 12:01:27.830415 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:27.830402465 +0000 UTC m=+28.237010754 I0420 12:01:27.858506 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:27.858730 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:27.858725937 +0000 UTC m=+28.265334226 I0420 12:01:27.882160 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:27.882417 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:27.882411824 +0000 UTC m=+28.289020123 I0420 12:01:27.883728 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:31.240447 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:31.240690 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-20 12:01:31.240680402 +0000 UTC m=+31.647288721 I0420 12:01:31.243188 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-20 12:01:31.240483529 +0000 UTC m=+31.647091848 E0420 12:01:31.258089 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 12:01:31.258133 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-20 12:01:31.258126069 +0000 UTC m=+31.664734368 I0420 12:01:31.258175 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 12:01:31.259871 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:31.259909 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:31.259927 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-20 12:01:31.259924474 +0000 UTC m=+31.666532763 E0420 12:01:31.270464 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0420 12:01:31.272158 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 12:01:31.272505 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-20 12:01:31.272498555 +0000 UTC m=+31.679106844 I0420 12:01:31.272707 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:31.272801 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-20 12:01:31.272790929 +0000 UTC m=+31.679399228 I0420 12:01:31.277134 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0420 12:01:31.277347 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0420 12:01:31.288355 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:31.288603 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:01:31.288634 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-20 12:01:31.288627415 +0000 UTC m=+31.695235714 I0420 12:01:31.484853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:31.490352 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-svv6t" condition "Approved" to 2026-04-20 12:01:31.490339646 +0000 UTC m=+31.896947945 I0420 12:01:31.517502 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-svv6t" condition "Ready" to 2026-04-20 12:01:31.517491087 +0000 UTC m=+31.924099386 I0420 12:01:31.544368 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:31.544358063 +0000 UTC m=+31.950966362 I0420 12:01:31.562254 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:31.689083 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:32.015826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-v6f6f" condition "Approved" to 2026-04-20 12:01:32.015815414 +0000 UTC m=+32.422423703 I0420 12:01:32.031887 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-v6f6f" condition "Ready" to 2026-04-20 12:01:32.031881561 +0000 UTC m=+32.438489840 I0420 12:01:36.271727 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:36.271713295 +0000 UTC m=+36.678321614 I0420 12:01:36.293905 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-v6f6f" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:36.293890223 +0000 UTC m=+36.700498522 I0420 12:01:36.325770 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:36.325756901 +0000 UTC m=+36.732365230 I0420 12:01:36.350579 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:36.352634 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:36.352626262 +0000 UTC m=+36.759234561 I0420 12:01:36.355093 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:36.362880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:36.369864 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:01:36.370230 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:01:36.370221718 +0000 UTC m=+36.776830047 I0420 12:06:12.031981 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-242.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:06:12.032025 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Issuing" to 2026-04-20 12:06:12.032013938 +0000 UTC m=+312.438622227 I0420 12:06:12.032405 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready" to 2026-04-20 12:06:12.032399987 +0000 UTC m=+312.439008286 I0420 12:06:12.047178 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:06:12.047235 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-242.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:06:12.047256 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Issuing" to 2026-04-20 12:06:12.047251828 +0000 UTC m=+312.453860127 I0420 12:06:12.352871 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-242.nip.io-tls-sxlgs" condition "Approved" to 2026-04-20 12:06:12.352850204 +0000 UTC m=+312.759458523 I0420 12:06:12.371215 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-242.nip.io-tls-sxlgs" condition "Ready" to 2026-04-20 12:06:12.371202836 +0000 UTC m=+312.777811135 I0420 12:06:12.401659 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:06:12.401642306 +0000 UTC m=+312.808250595 I0420 12:06:12.420280 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:06:12.420667 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:06:12.420661163 +0000 UTC m=+312.827269462 I0420 12:06:12.435655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:06:12.435905 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-242.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:06:12.435899783 +0000 UTC m=+312.842508072 I0420 12:06:12.436178 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-242.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-242.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:07:23.304453 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:07:23.304600 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 12:07:23.304544939 +0000 UTC m=+383.711153238 I0420 12:07:23.304695 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 12:07:23.30460332 +0000 UTC m=+383.711211649 E0420 12:07:23.318308 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 12:07:23.318493 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-20 12:07:23.318479124 +0000 UTC m=+383.725087463 E0420 12:07:23.318541 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 12:07:23.319106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:07:23.319241 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:07:23.319312 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 12:07:23.31930295 +0000 UTC m=+383.725911249 E0420 12:07:23.331790 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0420 12:07:23.332115 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 12:07:23.332340 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 12:07:23.332551 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0420 12:07:23.359528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-7fncp" condition "Approved" to 2026-04-20 12:07:23.359505843 +0000 UTC m=+383.766114162 I0420 12:07:23.371963 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-7fncp" condition "Ready" to 2026-04-20 12:07:23.371948598 +0000 UTC m=+383.778556897 I0420 12:07:23.393925 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:07:23.393917921 +0000 UTC m=+383.800526220 I0420 12:07:23.419304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:07:23.419683 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:07:23.419671628 +0000 UTC m=+383.826279927 I0420 12:07:23.422482 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:07:23.433901 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:07:23.434096 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:07:23.434085852 +0000 UTC m=+383.840694151 I0420 12:07:28.333488 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:07:28.333462672 +0000 UTC m=+388.740070991 I0420 12:08:06.773428 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 12:08:06.773411997 +0000 UTC m=+427.180020286 I0420 12:08:06.773819 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:06.773838 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 12:08:06.773835795 +0000 UTC m=+427.180444084 I0420 12:08:06.779313 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:06.779347 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 12:08:06.779340026 +0000 UTC m=+427.185948305 I0420 12:08:06.779776 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-20 12:08:06.779771454 +0000 UTC m=+427.186379743 I0420 12:08:06.816969 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:06.818964 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-20 12:08:06.818939317 +0000 UTC m=+427.225547606 I0420 12:08:06.817575 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 12:08:06.817559222 +0000 UTC m=+427.224167521 I0420 12:08:06.829366 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:06.829432 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:06.829475 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 12:08:06.829451511 +0000 UTC m=+427.236059800 I0420 12:08:06.862503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:06.862575 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:06.862600 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-20 12:08:06.862594873 +0000 UTC m=+427.269203172 I0420 12:08:06.866813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:06.867012 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:06.867052 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 12:08:06.867045515 +0000 UTC m=+427.273653804 I0420 12:08:07.074760 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-l87kv" condition "Approved" to 2026-04-20 12:08:07.074747456 +0000 UTC m=+427.481355745 I0420 12:08:07.092890 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lx8zr" condition "Approved" to 2026-04-20 12:08:07.092877149 +0000 UTC m=+427.499485428 I0420 12:08:07.125181 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-l87kv" condition "Ready" to 2026-04-20 12:08:07.125170225 +0000 UTC m=+427.531778514 I0420 12:08:07.130438 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lx8zr" condition "Ready" to 2026-04-20 12:08:07.130433422 +0000 UTC m=+427.537041711 I0420 12:08:07.191302 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:07.191287082 +0000 UTC m=+427.597895371 I0420 12:08:07.227690 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:07.227677523 +0000 UTC m=+427.634285812 I0420 12:08:07.237285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:07.260766 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:07.294706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:07.465948 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-w9vbs" condition "Approved" to 2026-04-20 12:08:07.465927563 +0000 UTC m=+427.872535862 I0420 12:08:07.667630 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-w9vbs" condition "Ready" to 2026-04-20 12:08:07.667606909 +0000 UTC m=+428.074215228 I0420 12:08:08.216549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:08.264169 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:08.264152465 +0000 UTC m=+428.670760764 I0420 12:08:08.357535 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:08.357941 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:08.357933741 +0000 UTC m=+428.764542040 I0420 12:08:08.564924 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:13.869573 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" condition "Ready" to 2026-04-20 12:08:13.869552931 +0000 UTC m=+434.276161220 I0420 12:08:13.870385 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:13.870534 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" condition "Issuing" to 2026-04-20 12:08:13.870438138 +0000 UTC m=+434.277046457 I0420 12:08:13.887324 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x52tw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:13.887378 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" condition "Ready" to 2026-04-20 12:08:13.887374307 +0000 UTC m=+434.293982596 I0420 12:08:14.027401 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x52tw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:14.072352 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-x52tw-shbhk" condition "Approved" to 2026-04-20 12:08:14.072335067 +0000 UTC m=+434.478943376 I0420 12:08:14.092752 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-x52tw-shbhk" condition "Ready" to 2026-04-20 12:08:14.09273898 +0000 UTC m=+434.499347279 I0420 12:08:14.137408 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:14.137389935 +0000 UTC m=+434.543998244 I0420 12:08:14.163830 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x52tw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:14.166792 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:14.166766701 +0000 UTC m=+434.573375000 I0420 12:08:14.199061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x52tw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:14.199187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x52tw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:14.199398 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-x52tw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:14.199390047 +0000 UTC m=+434.605998326 I0420 12:08:26.268667 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:08:26.268827 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 12:08:26.268805306 +0000 UTC m=+446.675413605 I0420 12:08:26.268673 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 12:08:26.268645143 +0000 UTC m=+446.675253432 I0420 12:08:26.285847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:26.285971 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 12:08:26.285960335 +0000 UTC m=+446.692568664 I0420 12:08:26.482417 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:26.522991 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hv9vf" condition "Approved" to 2026-04-20 12:08:26.52297319 +0000 UTC m=+446.929581489 I0420 12:08:26.543360 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-hv9vf" condition "Ready" to 2026-04-20 12:08:26.543342536 +0000 UTC m=+446.949950835 I0420 12:08:26.585105 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:26.585069328 +0000 UTC m=+446.991677627 I0420 12:08:26.606614 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:26.606871 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:26.60686348 +0000 UTC m=+447.013471769 I0420 12:08:26.633025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:08:26.633444 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:08:26.633436738 +0000 UTC m=+447.040045017 I0420 12:09:43.969352 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:09:43.969522 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 12:09:43.969504352 +0000 UTC m=+524.376112671 I0420 12:09:43.969468 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 12:09:43.969441561 +0000 UTC m=+524.376049880 I0420 12:09:44.004202 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:09:44.004425 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:09:44.004499 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 12:09:44.004487989 +0000 UTC m=+524.411096318 I0420 12:09:44.193254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-dws7k" condition "Approved" to 2026-04-20 12:09:44.193229073 +0000 UTC m=+524.599837362 I0420 12:09:44.212929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-dws7k" condition "Ready" to 2026-04-20 12:09:44.212913873 +0000 UTC m=+524.619522172 I0420 12:09:44.243441 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:09:44.243427255 +0000 UTC m=+524.650035544 I0420 12:09:44.267637 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:09:44.314471 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:10:32.444489 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-20 12:10:32.444475547 +0000 UTC m=+572.851083846 I0420 12:10:32.444701 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:10:32.444763 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-20 12:10:32.444737811 +0000 UTC m=+572.851346100 I0420 12:10:32.459998 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:10:32.460086 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 12:10:32.460112 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-20 12:10:32.460105693 +0000 UTC m=+572.866714022 I0420 12:10:32.750108 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-rr74g" condition "Approved" to 2026-04-20 12:10:32.750093912 +0000 UTC m=+573.156702191 I0420 12:10:32.767431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-rr74g" condition "Ready" to 2026-04-20 12:10:32.767421545 +0000 UTC m=+573.174029854 I0420 12:10:32.800268 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:10:32.80025525 +0000 UTC m=+573.206863539 I0420 12:10:32.828864 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:10:32.829244 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:10:32.829237933 +0000 UTC m=+573.235846212 I0420 12:10:32.839867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:10:32.842124 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 12:10:32.842399 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 12:10:32.842394077 +0000 UTC m=+573.249002366