I0407 15:19:09.324205 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0407 15:19:09.324699 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0407 15:19:09.324779 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0407 15:19:09.331375 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0407 15:19:09.331975 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0407 15:19:09.332065 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0407 15:19:09.332101 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0407 15:19:09.335565 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0407 15:19:09.356245 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0407 15:19:09.356469 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0407 15:19:09.362073 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0407 15:19:09.366533 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0407 15:19:09.366558 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0407 15:19:09.366628 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0407 15:19:09.373038 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0407 15:19:09.377445 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0407 15:19:09.379879 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0407 15:19:09.381784 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0407 15:19:09.386473 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0407 15:19:09.389035 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0407 15:19:09.389084 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0407 15:19:09.395547 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0407 15:19:09.398445 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0407 15:19:09.400882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0407 15:19:09.403382 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0407 15:19:09.405355 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0407 15:19:09.405402 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0407 15:19:09.405407 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0407 15:19:09.407511 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0407 15:19:09.410978 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0407 15:19:09.416489 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0407 15:19:09.420384 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0407 15:19:09.425432 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0407 15:19:09.429055 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.429285 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.429683 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.452809 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.472803 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.491515 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.505512 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.523571 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.528697 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:09.545033 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 15:19:21.465932 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-07 15:19:21.465915329 +0000 UTC m=+12.178190199 I0407 15:19:22.237451 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-07 15:19:22.237436118 +0000 UTC m=+12.949710988 I0407 15:19:22.239543 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:19:22.239651 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 15:19:22.239637569 +0000 UTC m=+12.951912449 E0407 15:19:22.253542 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:19:22.253633 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-07 15:19:22.253624333 +0000 UTC m=+12.965899183 E0407 15:19:22.253668 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:19:22.255571 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:22.255636 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:19:22.255655 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 15:19:22.255646908 +0000 UTC m=+12.967921758 E0407 15:19:22.269830 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0407 15:19:22.270479 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:19:22.270673 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:19:22.270754 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0407 15:19:22.304751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:22.314509 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-lqp6k" condition "Approved" to 2026-04-07 15:19:22.314492746 +0000 UTC m=+13.026767666 I0407 15:19:22.345182 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-lqp6k" condition "Ready" to 2026-04-07 15:19:22.34516832 +0000 UTC m=+13.057443200 I0407 15:19:22.374620 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:19:22.374595879 +0000 UTC m=+13.086870739 I0407 15:19:22.403034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:22.462432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:27.271247 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:19:27.271231244 +0000 UTC m=+17.983506124 I0407 15:19:51.323467 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 15:19:51.323444982 +0000 UTC m=+42.035719852 I0407 15:19:51.323575 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:19:51.323736 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-07 15:19:51.32372207 +0000 UTC m=+42.035996920 I0407 15:19:51.339553 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-07 15:19:51.339535065 +0000 UTC m=+42.051809915 I0407 15:19:51.345955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:51.346051 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 15:19:51.346041903 +0000 UTC m=+42.058316743 I0407 15:19:51.416252 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:51.454805 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-7sdk6" condition "Approved" to 2026-04-07 15:19:51.454787563 +0000 UTC m=+42.167062413 I0407 15:19:51.492554 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-7sdk6" condition "Ready" to 2026-04-07 15:19:51.49253475 +0000 UTC m=+42.204809620 I0407 15:19:51.525145 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:19:51.525128886 +0000 UTC m=+42.237403736 I0407 15:19:51.595295 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:19:51.653787 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:42.133591 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:21:42.133705 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-07 15:21:42.133691848 +0000 UTC m=+152.845966728 I0407 15:21:42.133978 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-07 15:21:42.133946474 +0000 UTC m=+152.846221434 E0407 15:21:42.155686 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0407 15:21:42.155746 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-07 15:21:42.155736744 +0000 UTC m=+152.868011594 I0407 15:21:42.155798 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0407 15:21:42.163047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:42.163147 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:21:42.163175 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-07 15:21:42.163167135 +0000 UTC m=+152.875441975 I0407 15:21:42.168125 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-07 15:21:42.168103577 +0000 UTC m=+152.880378427 I0407 15:21:42.168154 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:21:42.168219 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-07 15:21:42.16821473 +0000 UTC m=+152.880489580 E0407 15:21:42.168828 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0407 15:21:42.168988 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0407 15:21:42.169037 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0407 15:21:42.169097 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0407 15:21:42.184794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:42.184982 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:21:42.185052 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-07 15:21:42.185038816 +0000 UTC m=+152.897313686 I0407 15:21:42.363225 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:42.372056 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-4f464" condition "Approved" to 2026-04-07 15:21:42.372033462 +0000 UTC m=+153.084308332 I0407 15:21:42.409929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-4f464" condition "Ready" to 2026-04-07 15:21:42.409913756 +0000 UTC m=+153.122188606 I0407 15:21:42.442139 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:21:42.442121527 +0000 UTC m=+153.154396377 I0407 15:21:42.461407 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:42.492718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-kpctf" condition "Approved" to 2026-04-07 15:21:42.492699124 +0000 UTC m=+153.204973994 I0407 15:21:42.510627 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-kpctf" condition "Ready" to 2026-04-07 15:21:42.510596099 +0000 UTC m=+153.222870959 I0407 15:21:47.169583 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:21:47.169568978 +0000 UTC m=+157.881843848 I0407 15:21:47.186237 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-kpctf" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:21:47.186220437 +0000 UTC m=+157.898495287 I0407 15:21:47.231362 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:21:47.231344517 +0000 UTC m=+157.943619357 I0407 15:21:47.267118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:47.268709 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:21:47.267642579 +0000 UTC m=+157.979917429 I0407 15:21:47.285335 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:21:47.286123 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:21:47.286103788 +0000 UTC m=+157.998378698 I0407 15:21:47.288702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:24:30.498750 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready" to 2026-04-07 15:24:30.498733527 +0000 UTC m=+321.211008377 I0407 15:24:30.499252 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:24:30.499276 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Issuing" to 2026-04-07 15:24:30.499272101 +0000 UTC m=+321.211546951 I0407 15:24:30.514770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:24:30.514849 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-3.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:24:30.514866 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Issuing" to 2026-04-07 15:24:30.514858851 +0000 UTC m=+321.227133701 I0407 15:24:30.646408 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:24:30.657049 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-vpcx8" condition "Approved" to 2026-04-07 15:24:30.657028082 +0000 UTC m=+321.369302962 I0407 15:24:30.675451 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-3.nip.io-tls-vpcx8" condition "Ready" to 2026-04-07 15:24:30.675434147 +0000 UTC m=+321.387708977 I0407 15:24:30.702677 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:24:30.702657288 +0000 UTC m=+321.414932168 I0407 15:24:30.723186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:24:30.723584 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:24:30.723574761 +0000 UTC m=+321.435849591 I0407 15:24:30.737601 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-3.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-3.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:24:30.737857 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-3.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:24:30.737853124 +0000 UTC m=+321.450127964 I0407 15:25:43.778081 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:25:43.778121 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-07 15:25:43.778096287 +0000 UTC m=+394.490371157 I0407 15:25:43.778137 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 15:25:43.778123328 +0000 UTC m=+394.490398208 E0407 15:25:43.787571 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:25:43.787633 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-07 15:25:43.787621864 +0000 UTC m=+394.499896744 E0407 15:25:43.787847 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 15:25:43.792249 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:43.792333 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:25:43.792357 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 15:25:43.792348702 +0000 UTC m=+394.504623552 E0407 15:25:43.800665 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0407 15:25:43.800799 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:25:43.800861 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 15:25:43.800917 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0407 15:25:43.831175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:43.834413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-sf99j" condition "Approved" to 2026-04-07 15:25:43.834396471 +0000 UTC m=+394.546671351 I0407 15:25:43.846610 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-sf99j" condition "Ready" to 2026-04-07 15:25:43.84659954 +0000 UTC m=+394.558874380 I0407 15:25:43.875625 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:43.875606725 +0000 UTC m=+394.587881585 I0407 15:25:43.897385 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:43.897719 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:43.897708473 +0000 UTC m=+394.609983343 I0407 15:25:43.902454 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:43.911183 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:43.911455 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:25:43.911760 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:43.911735783 +0000 UTC m=+394.624010613 I0407 15:25:48.802119 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:25:48.802102428 +0000 UTC m=+399.514377298 I0407 15:26:29.012073 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-07 15:26:29.01204976 +0000 UTC m=+439.724324630 I0407 15:26:29.012267 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:29.012332 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 15:26:29.012320247 +0000 UTC m=+439.724595097 I0407 15:26:29.022788 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:29.022835 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-07 15:26:29.022824221 +0000 UTC m=+439.735099071 I0407 15:26:29.023228 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:29.023248 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-07 15:26:29.023244503 +0000 UTC m=+439.735519353 I0407 15:26:29.023967 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 15:26:29.023959082 +0000 UTC m=+439.736233932 I0407 15:26:29.024187 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-07 15:26:29.024181967 +0000 UTC m=+439.736456817 I0407 15:26:29.045567 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.045776 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:29.045809 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 15:26:29.045800143 +0000 UTC m=+439.758074993 I0407 15:26:29.056947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.057164 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 15:26:29.057086518 +0000 UTC m=+439.769361358 I0407 15:26:29.058435 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.058519 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:29.058604 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-07 15:26:29.058595639 +0000 UTC m=+439.770870509 I0407 15:26:29.139883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.179221 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jhxhd" condition "Approved" to 2026-04-07 15:26:29.179198022 +0000 UTC m=+439.891472902 I0407 15:26:29.199224 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jhxhd" condition "Ready" to 2026-04-07 15:26:29.199205594 +0000 UTC m=+439.911480444 I0407 15:26:29.234910 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:29.234893009 +0000 UTC m=+439.947167879 I0407 15:26:29.257489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.258217 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:29.258159268 +0000 UTC m=+439.970434118 I0407 15:26:29.281192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.350332 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:29.354190 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-688g4" condition "Approved" to 2026-04-07 15:26:29.354176236 +0000 UTC m=+440.066451076 I0407 15:26:29.372429 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-688g4" condition "Ready" to 2026-04-07 15:26:29.3724174 +0000 UTC m=+440.084692230 I0407 15:26:29.399497 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:29.399478502 +0000 UTC m=+440.111753362 I0407 15:26:29.449204 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:30.094786 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r8x8k" condition "Approved" to 2026-04-07 15:26:30.094765731 +0000 UTC m=+440.807040601 I0407 15:26:30.133289 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r8x8k" condition "Ready" to 2026-04-07 15:26:30.133268375 +0000 UTC m=+440.845543245 I0407 15:26:30.448565 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:30.448548581 +0000 UTC m=+441.160823421 I0407 15:26:30.556561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:30.556937 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:30.5569306 +0000 UTC m=+441.269205430 I0407 15:26:30.748288 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:40.947932 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:40.948009 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" condition "Issuing" to 2026-04-07 15:26:40.947972633 +0000 UTC m=+451.660247513 I0407 15:26:40.948137 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" condition "Ready" to 2026-04-07 15:26:40.948109987 +0000 UTC m=+451.660384837 I0407 15:26:40.968947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:40.969027 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:26:40.969047 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" condition "Issuing" to 2026-04-07 15:26:40.969042474 +0000 UTC m=+451.681317324 I0407 15:26:41.146603 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-pw5tm-f2l4z" condition "Approved" to 2026-04-07 15:26:41.146583428 +0000 UTC m=+451.858858278 I0407 15:26:41.178718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-pw5tm-f2l4z" condition "Ready" to 2026-04-07 15:26:41.178706438 +0000 UTC m=+451.890981288 I0407 15:26:41.213450 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:41.21342857 +0000 UTC m=+451.925703410 I0407 15:26:41.235617 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:26:41.236442 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:26:41.236430143 +0000 UTC m=+451.948705013 I0407 15:26:41.265350 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-pw5tm-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:08.093763 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-07 15:27:08.093740775 +0000 UTC m=+478.806015615 I0407 15:27:08.094221 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:27:08.094280 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-07 15:27:08.094266029 +0000 UTC m=+478.806540909 I0407 15:27:08.136955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:08.137070 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-07 15:27:08.137057129 +0000 UTC m=+478.849331999 I0407 15:27:08.272154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:08.312803 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-65s9j" condition "Approved" to 2026-04-07 15:27:08.312782623 +0000 UTC m=+479.025057463 I0407 15:27:08.334503 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-65s9j" condition "Ready" to 2026-04-07 15:27:08.334489911 +0000 UTC m=+479.046764761 I0407 15:27:08.368619 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:27:08.368596916 +0000 UTC m=+479.080871796 I0407 15:27:08.391690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:27:08.440825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:30:36.433612 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-07 15:30:36.433587009 +0000 UTC m=+687.145861879 I0407 15:30:36.433936 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:30:36.434007 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 15:30:36.43396977 +0000 UTC m=+687.146244640 I0407 15:30:36.457083 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:30:36.457207 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:30:36.457236 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 15:30:36.457228483 +0000 UTC m=+687.169503353 I0407 15:30:36.578932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:30:36.589063 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xrn5x" condition "Approved" to 2026-04-07 15:30:36.589048836 +0000 UTC m=+687.301323666 I0407 15:30:36.608379 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xrn5x" condition "Ready" to 2026-04-07 15:30:36.608366121 +0000 UTC m=+687.320640961 I0407 15:30:36.637063 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:30:36.63704597 +0000 UTC m=+687.349320820 I0407 15:30:36.654695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:30:36.655183 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:30:36.655172933 +0000 UTC m=+687.367447813 I0407 15:30:36.673587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:33:06.660540 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-07 15:33:06.660522666 +0000 UTC m=+837.372797516 I0407 15:33:06.660571 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:33:06.660635 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-07 15:33:06.660627689 +0000 UTC m=+837.372902569 I0407 15:33:06.680354 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:33:06.680460 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:33:06.680492 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-07 15:33:06.680482405 +0000 UTC m=+837.392757285 I0407 15:33:06.880230 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-hpdb6" condition "Approved" to 2026-04-07 15:33:06.880215318 +0000 UTC m=+837.592490168 I0407 15:33:06.901084 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-hpdb6" condition "Ready" to 2026-04-07 15:33:06.901072122 +0000 UTC m=+837.613346952 I0407 15:33:06.927027 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:33:06.927013502 +0000 UTC m=+837.639288352 I0407 15:33:06.952924 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:33:06.953497 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:33:06.953489187 +0000 UTC m=+837.665764037 I0407 15:33:06.973217 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:33:06.973469 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:33:06.973461956 +0000 UTC m=+837.685736796 I0407 15:34:18.522030 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-07 15:34:18.522003859 +0000 UTC m=+909.234278739 I0407 15:34:18.522055 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:34:18.522306 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-07 15:34:18.522293317 +0000 UTC m=+909.234568157 I0407 15:34:18.542595 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:34:18.542705 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-07 15:34:18.542692388 +0000 UTC m=+909.254967238 I0407 15:34:18.779166 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:34:18.812842 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-2stpm" condition "Approved" to 2026-04-07 15:34:18.812824223 +0000 UTC m=+909.525099093 I0407 15:34:18.838098 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-2stpm" condition "Ready" to 2026-04-07 15:34:18.838086304 +0000 UTC m=+909.550361154 I0407 15:34:18.869744 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:34:18.869727789 +0000 UTC m=+909.582002669 I0407 15:34:18.892945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:34:18.893357 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:34:18.893323826 +0000 UTC m=+909.605598676 I0407 15:34:18.911722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:34:18.913230 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:34:18.913216003 +0000 UTC m=+909.625490873 I0407 15:34:18.920539 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:37:29.374753 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-07 15:37:29.374733596 +0000 UTC m=+1100.087008476 I0407 15:37:29.374936 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:37:29.374953 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-07 15:37:29.374948622 +0000 UTC m=+1100.087223472 I0407 15:37:29.395994 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:37:29.396065 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 15:37:29.396080 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-07 15:37:29.396075033 +0000 UTC m=+1100.108349883 I0407 15:37:29.722786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 15:37:29.729251 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-c8z55" condition "Approved" to 2026-04-07 15:37:29.729237093 +0000 UTC m=+1100.441511933 I0407 15:37:29.749984 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-c8z55" condition "Ready" to 2026-04-07 15:37:29.749969823 +0000 UTC m=+1100.462244663 I0407 15:37:29.776630 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 15:37:29.776615272 +0000 UTC m=+1100.488890112 I0407 15:37:29.804526 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"