I0501 14:11:24.431226 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0501 14:11:24.431407 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0501 14:11:24.431533 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0501 14:11:24.438413 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0501 14:11:24.439344 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0501 14:11:24.439706 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0501 14:11:24.440162 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0501 14:11:24.444577 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0501 14:11:24.462911 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0501 14:11:24.467638 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0501 14:11:24.469766 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0501 14:11:24.472964 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0501 14:11:24.473031 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0501 14:11:24.477441 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0501 14:11:24.477587 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0501 14:11:24.477626 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0501 14:11:24.477769 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0501 14:11:24.483049 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0501 14:11:24.486058 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0501 14:11:24.488968 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0501 14:11:24.491836 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0501 14:11:24.496642 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0501 14:11:24.499834 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0501 14:11:24.502466 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0501 14:11:24.508172 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0501 14:11:24.512722 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0501 14:11:24.516876 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0501 14:11:24.519406 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0501 14:11:24.521526 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0501 14:11:24.521557 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0501 14:11:24.521666 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0501 14:11:24.523926 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0501 14:11:24.526867 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0501 14:11:24.528374 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.529887 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.530551 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.530552 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.530716 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.530990 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.531194 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.531953 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.532163 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:24.621243 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0501 14:11:35.604630 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-01 14:11:35.604602284 +0000 UTC m=+11.209969877 I0501 14:11:36.342509 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:11:36.342588 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-01 14:11:36.342578505 +0000 UTC m=+11.947946118 I0501 14:11:36.342566 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-01 14:11:36.342543594 +0000 UTC m=+11.947911217 E0501 14:11:36.355684 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:11:36.355754 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-01 14:11:36.355746089 +0000 UTC m=+11.961113682 E0501 14:11:36.355781 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:11:36.359706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:36.359920 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:11:36.360061 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-01 14:11:36.360044932 +0000 UTC m=+11.965412585 E0501 14:11:36.366203 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0501 14:11:36.366287 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:11:36.366308 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:11:36.366350 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0501 14:11:36.398214 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:36.398649 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5wtdx" condition "Approved" to 2026-05-01 14:11:36.398632224 +0000 UTC m=+12.003999827 I0501 14:11:36.410700 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5wtdx" condition "Ready" to 2026-05-01 14:11:36.410685702 +0000 UTC m=+12.016053295 I0501 14:11:36.439680 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:11:36.439660683 +0000 UTC m=+12.045028266 I0501 14:11:36.456909 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:36.457216 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:11:36.457210854 +0000 UTC m=+12.062578437 I0501 14:11:36.477493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:11:41.366918 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:11:41.366904679 +0000 UTC m=+16.972272292 I0501 14:12:02.570946 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-01 14:12:02.570917147 +0000 UTC m=+38.176284840 I0501 14:12:02.571001 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:12:02.571118 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-01 14:12:02.571106952 +0000 UTC m=+38.176474565 I0501 14:12:02.582901 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-01 14:12:02.582885984 +0000 UTC m=+38.188253577 I0501 14:12:02.595919 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:02.596012 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-01 14:12:02.596004566 +0000 UTC m=+38.201372139 I0501 14:12:02.801095 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:02.840983 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-qwww7" condition "Approved" to 2026-05-01 14:12:02.840964285 +0000 UTC m=+38.446331898 I0501 14:12:02.876030 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-qwww7" condition "Ready" to 2026-05-01 14:12:02.876012282 +0000 UTC m=+38.481379885 I0501 14:12:02.910150 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:12:02.910128167 +0000 UTC m=+38.515495780 I0501 14:12:02.931241 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:02.932138 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:12:02.932128252 +0000 UTC m=+38.537495845 I0501 14:12:02.950633 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:12:02.950967 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:12:02.950956962 +0000 UTC m=+38.556324555 I0501 14:14:01.598378 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:14:01.598461 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-01 14:14:01.5984509 +0000 UTC m=+157.203818493 I0501 14:14:01.598473 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-01 14:14:01.59802211 +0000 UTC m=+157.203389723 E0501 14:14:01.614510 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0501 14:14:01.614641 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-01 14:14:01.614627909 +0000 UTC m=+157.219995512 I0501 14:14:01.614673 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0501 14:14:01.617231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:01.617318 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-01 14:14:01.617309394 +0000 UTC m=+157.222676987 E0501 14:14:01.628653 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0501 14:14:01.628880 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0501 14:14:01.628926 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0501 14:14:01.628962 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0501 14:14:01.629946 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:14:01.629991 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-01 14:14:01.629979298 +0000 UTC m=+157.235346891 I0501 14:14:01.629976 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-01 14:14:01.629964237 +0000 UTC m=+157.235331820 I0501 14:14:01.648225 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:01.648302 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-01 14:14:01.648293948 +0000 UTC m=+157.253661541 I0501 14:14:01.780387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:01.811036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-9g4sc" condition "Approved" to 2026-05-01 14:14:01.811013396 +0000 UTC m=+157.416381009 I0501 14:14:01.848512 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-9g4sc" condition "Ready" to 2026-05-01 14:14:01.848492567 +0000 UTC m=+157.453860190 I0501 14:14:01.880598 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:14:01.880582388 +0000 UTC m=+157.485949971 I0501 14:14:01.903449 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:01.903850 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:14:01.903845007 +0000 UTC m=+157.509212600 I0501 14:14:01.921841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:01.924564 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:02.024106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:02.058383 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-7rg2x" condition "Approved" to 2026-05-01 14:14:02.058355748 +0000 UTC m=+157.663723361 I0501 14:14:02.081133 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-7rg2x" condition "Ready" to 2026-05-01 14:14:02.081111976 +0000 UTC m=+157.686479559 I0501 14:14:06.629520 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:14:06.629502398 +0000 UTC m=+162.234870021 I0501 14:14:06.646497 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-7rg2x" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:14:06.646483196 +0000 UTC m=+162.251850789 I0501 14:14:06.679376 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:14:06.679355406 +0000 UTC m=+162.284722999 I0501 14:14:06.698652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:14:06.698974 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:14:06.698964177 +0000 UTC m=+162.304331760 I0501 14:14:06.720941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:43.907960 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-235.nip.io-tls" condition "Ready" to 2026-05-01 14:16:43.907891021 +0000 UTC m=+319.513258604 I0501 14:16:43.908241 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-235.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:16:43.908400 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-235.nip.io-tls" condition "Issuing" to 2026-05-01 14:16:43.908326284 +0000 UTC m=+319.513693907 I0501 14:16:43.925790 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-235.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-235.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:43.925846 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-235.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:16:43.925859 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-235.nip.io-tls" condition "Issuing" to 2026-05-01 14:16:43.925855294 +0000 UTC m=+319.531222887 I0501 14:16:44.315019 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-235.nip.io-tls-6svxz" condition "Approved" to 2026-05-01 14:16:44.315003079 +0000 UTC m=+319.920370682 I0501 14:16:44.335984 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-235.nip.io-tls-6svxz" condition "Ready" to 2026-05-01 14:16:44.335967588 +0000 UTC m=+319.941335211 I0501 14:16:44.365938 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-235.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:16:44.365922665 +0000 UTC m=+319.971290288 I0501 14:16:44.384396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-235.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-235.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:44.384807 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-235.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:16:44.384800273 +0000 UTC m=+319.990167866 I0501 14:16:44.402245 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-235.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-235.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:44.403130 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-235.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-235.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:16:44.403509 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-235.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:16:44.403498875 +0000 UTC m=+320.008866468 I0501 14:17:55.644957 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-01 14:17:55.644928939 +0000 UTC m=+391.250296552 I0501 14:17:55.645124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:17:55.645211 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-01 14:17:55.645196715 +0000 UTC m=+391.250564338 E0501 14:17:55.658580 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:17:55.658645 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-01 14:17:55.65863356 +0000 UTC m=+391.264001153 E0501 14:17:55.658715 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0501 14:17:55.659306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:55.659388 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-01 14:17:55.659380918 +0000 UTC m=+391.264748521 E0501 14:17:55.668650 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0501 14:17:55.668756 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:17:55.668795 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0501 14:17:55.668834 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0501 14:17:55.678825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:55.678940 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-01 14:17:55.678929779 +0000 UTC m=+391.284297372 I0501 14:17:55.681354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xngc7" condition "Approved" to 2026-05-01 14:17:55.681342598 +0000 UTC m=+391.286710171 I0501 14:17:55.692051 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-01 14:17:55.692035986 +0000 UTC m=+391.297403589 I0501 14:17:55.696442 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xngc7" condition "Ready" to 2026-05-01 14:17:55.696425061 +0000 UTC m=+391.301792654 I0501 14:17:55.700590 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:55.717100 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:17:55.717081851 +0000 UTC m=+391.322449474 I0501 14:17:55.733628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:17:55.734124 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:17:55.734106011 +0000 UTC m=+391.339473684 I0501 14:17:55.756150 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:00.669459 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:00.669445861 +0000 UTC m=+396.274813444 I0501 14:18:43.009499 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:18:43.009664 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-01 14:18:43.009653498 +0000 UTC m=+438.615021131 I0501 14:18:43.010387 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-01 14:18:43.010347564 +0000 UTC m=+438.615715157 I0501 14:18:43.038096 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-01 14:18:43.038077782 +0000 UTC m=+438.643445405 I0501 14:18:43.038619 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:18:43.038657 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-01 14:18:43.038650536 +0000 UTC m=+438.644018159 I0501 14:18:43.047768 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:18:43.047806 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-01 14:18:43.047798793 +0000 UTC m=+438.653166386 I0501 14:18:43.048100 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-01 14:18:43.048063899 +0000 UTC m=+438.653431492 I0501 14:18:43.070203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:43.070381 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-01 14:18:43.070334198 +0000 UTC m=+438.675701811 I0501 14:18:43.078867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:43.078955 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:18:43.078991 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-01 14:18:43.078984473 +0000 UTC m=+438.684352056 I0501 14:18:43.086755 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:43.086859 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-01 14:18:43.08684863 +0000 UTC m=+438.692216233 I0501 14:18:43.154309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:43.204115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-qkf5t" condition "Approved" to 2026-05-01 14:18:43.204085673 +0000 UTC m=+438.809453276 I0501 14:18:43.226754 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-qkf5t" condition "Ready" to 2026-05-01 14:18:43.226733291 +0000 UTC m=+438.832100914 I0501 14:18:43.234325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:43.258507 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:43.258495536 +0000 UTC m=+438.863863129 I0501 14:18:43.285964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6p59w" condition "Approved" to 2026-05-01 14:18:43.285948587 +0000 UTC m=+438.891316170 I0501 14:18:43.310883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:43.311401 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-8ppwx" condition "Approved" to 2026-05-01 14:18:43.311391321 +0000 UTC m=+438.916758904 I0501 14:18:43.324460 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6p59w" condition "Ready" to 2026-05-01 14:18:43.324450451 +0000 UTC m=+438.929818034 I0501 14:18:43.336888 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-8ppwx" condition "Ready" to 2026-05-01 14:18:43.336878987 +0000 UTC m=+438.942246570 I0501 14:18:43.805469 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:43.805457931 +0000 UTC m=+439.410825524 I0501 14:18:43.960838 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:43.960830149 +0000 UTC m=+439.566197742 I0501 14:18:44.115569 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:44.115550753 +0000 UTC m=+439.720918336 I0501 14:18:44.157534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:44.256517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:44.257048 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:44.257037852 +0000 UTC m=+439.862405475 I0501 14:18:44.383043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:44.661514 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:44.903703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:50.928389 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" condition "Ready" to 2026-05-01 14:18:50.928372277 +0000 UTC m=+446.533739880 I0501 14:18:50.928542 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:18:50.928593 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" condition "Issuing" to 2026-05-01 14:18:50.928582383 +0000 UTC m=+446.533949966 I0501 14:18:50.943343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nffgg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:50.943445 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:18:50.943657 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" condition "Issuing" to 2026-05-01 14:18:50.94364767 +0000 UTC m=+446.549015243 I0501 14:18:51.111893 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nffgg-6tnl9" condition "Approved" to 2026-05-01 14:18:51.111877964 +0000 UTC m=+446.717245567 I0501 14:18:51.131718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nffgg-6tnl9" condition "Ready" to 2026-05-01 14:18:51.131710355 +0000 UTC m=+446.737077948 I0501 14:18:51.172335 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:51.172303659 +0000 UTC m=+446.777671302 I0501 14:18:51.196539 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nffgg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:51.197691 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:51.197676112 +0000 UTC m=+446.803043705 I0501 14:18:51.200475 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nffgg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:51.215751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nffgg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:18:51.216287 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nffgg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:18:51.216275643 +0000 UTC m=+446.821643236 I0501 14:19:17.798048 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:19:17.798098 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-01 14:19:17.798079467 +0000 UTC m=+473.403447080 I0501 14:19:17.798207 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-01 14:19:17.79819989 +0000 UTC m=+473.403567473 I0501 14:19:17.823016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:19:17.823193 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:19:17.823227 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-01 14:19:17.823216024 +0000 UTC m=+473.428583617 I0501 14:19:17.976609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-z2k66" condition "Approved" to 2026-05-01 14:19:17.976587875 +0000 UTC m=+473.581955468 I0501 14:19:18.000296 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-z2k66" condition "Ready" to 2026-05-01 14:19:18.000276027 +0000 UTC m=+473.605643620 I0501 14:19:18.036642 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:19:18.03661031 +0000 UTC m=+473.641977933 I0501 14:19:18.060956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:19:18.061298 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:19:18.061288596 +0000 UTC m=+473.666656189 I0501 14:19:18.084221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:22:44.526423 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-01 14:22:44.526409893 +0000 UTC m=+680.131777476 I0501 14:22:44.526556 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:22:44.526617 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-01 14:22:44.526604497 +0000 UTC m=+680.131972080 I0501 14:22:44.546942 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:22:44.547030 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:22:44.547060 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-01 14:22:44.547052416 +0000 UTC m=+680.152420009 I0501 14:22:44.809730 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-p2jx7" condition "Approved" to 2026-05-01 14:22:44.80970888 +0000 UTC m=+680.415076503 I0501 14:22:44.828463 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-p2jx7" condition "Ready" to 2026-05-01 14:22:44.828452537 +0000 UTC m=+680.433820120 I0501 14:22:44.861901 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:22:44.861877481 +0000 UTC m=+680.467245064 I0501 14:22:44.889447 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:22:44.889854 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:22:44.889845531 +0000 UTC m=+680.495213124 I0501 14:22:44.912877 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:22:44.913200 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:22:44.91319145 +0000 UTC m=+680.518559033 I0501 14:25:14.911302 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:25:14.911349 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-01 14:25:14.911330997 +0000 UTC m=+830.516698620 I0501 14:25:14.911401 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-01 14:25:14.911254305 +0000 UTC m=+830.516621938 I0501 14:25:14.929221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:25:14.929359 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:25:14.929419 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-01 14:25:14.929409205 +0000 UTC m=+830.534776828 I0501 14:25:15.041461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:25:15.048418 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-ktg72" condition "Approved" to 2026-05-01 14:25:15.048398624 +0000 UTC m=+830.653766217 I0501 14:25:15.072191 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-ktg72" condition "Ready" to 2026-05-01 14:25:15.072175351 +0000 UTC m=+830.677542944 I0501 14:25:15.110865 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:25:15.11084569 +0000 UTC m=+830.716213293 I0501 14:25:15.133873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:25:15.134353 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:25:15.13434594 +0000 UTC m=+830.739713523 I0501 14:25:15.146319 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:25:15.157856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:26:21.650964 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-01 14:26:21.650941934 +0000 UTC m=+897.256309577 I0501 14:26:21.651044 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:26:21.651085 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-01 14:26:21.651075477 +0000 UTC m=+897.256443110 I0501 14:26:21.671140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:26:21.671246 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-01 14:26:21.671229236 +0000 UTC m=+897.276596849 I0501 14:26:21.979174 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:26:22.014795 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-qxzv9" condition "Approved" to 2026-05-01 14:26:22.014776296 +0000 UTC m=+897.620143899 I0501 14:26:22.035445 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-qxzv9" condition "Ready" to 2026-05-01 14:26:22.035433747 +0000 UTC m=+897.640801350 I0501 14:26:22.079896 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:26:22.079878756 +0000 UTC m=+897.685246349 I0501 14:26:22.103857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:26:22.161227 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:29:28.403818 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-01 14:29:28.403800467 +0000 UTC m=+1084.009168050 I0501 14:29:28.404844 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:29:28.404902 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-01 14:29:28.404890904 +0000 UTC m=+1084.010258527 I0501 14:29:28.421223 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:29:28.421324 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:29:28.421356 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-01 14:29:28.42134735 +0000 UTC m=+1084.026714943 I0501 14:29:28.609612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:29:28.618595 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-qrnxf" condition "Approved" to 2026-05-01 14:29:28.618584285 +0000 UTC m=+1084.223951878 I0501 14:29:28.635821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-qrnxf" condition "Ready" to 2026-05-01 14:29:28.635809708 +0000 UTC m=+1084.241177301 I0501 14:29:28.675340 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:29:28.675327965 +0000 UTC m=+1084.280695558 I0501 14:29:28.694711 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:29:28.695023 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:29:28.695018097 +0000 UTC m=+1084.300385680 I0501 14:29:28.721050 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:29:28.721151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:35:41.705197 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:35:41.705331 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-01 14:35:41.705282036 +0000 UTC m=+1457.310649669 I0501 14:35:41.705331 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-01 14:35:41.705290287 +0000 UTC m=+1457.310657920 I0501 14:35:41.723378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:35:41.723458 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-01 14:35:41.723450346 +0000 UTC m=+1457.328817939 I0501 14:35:41.810281 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:35:41.838939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-q9s2m" condition "Approved" to 2026-05-01 14:35:41.838926901 +0000 UTC m=+1457.444294474 I0501 14:35:41.855248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-q9s2m" condition "Ready" to 2026-05-01 14:35:41.855229467 +0000 UTC m=+1457.460597090 I0501 14:35:41.881038 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:35:41.881019088 +0000 UTC m=+1457.486386701 I0501 14:35:41.912297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:35:41.970934 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:37:17.871893 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-01 14:37:17.87186472 +0000 UTC m=+1553.477232313 I0501 14:37:17.872016 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:37:17.872108 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-01 14:37:17.872098526 +0000 UTC m=+1553.477466139 I0501 14:37:17.892208 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:37:17.892305 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0501 14:37:17.892341 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-01 14:37:17.892334725 +0000 UTC m=+1553.497702318 I0501 14:37:18.112460 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0501 14:37:18.126190 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-hsdmn" condition "Approved" to 2026-05-01 14:37:18.126178232 +0000 UTC m=+1553.731545825 I0501 14:37:18.149942 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-hsdmn" condition "Ready" to 2026-05-01 14:37:18.149932025 +0000 UTC m=+1553.755299618 I0501 14:37:18.182086 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-01 14:37:18.182072046 +0000 UTC m=+1553.787439629 I0501 14:37:18.212799 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again"