I0401 23:33:31.834111 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0401 23:33:31.834287 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0401 23:33:31.834387 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0401 23:33:31.839879 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0401 23:33:31.840396 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0401 23:33:31.840507 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0401 23:33:31.840572 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0401 23:33:31.844001 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0401 23:33:31.878356 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0401 23:33:31.884118 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0401 23:33:31.888817 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0401 23:33:31.889135 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0401 23:33:31.894527 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0401 23:33:31.897340 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0401 23:33:31.900005 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0401 23:33:31.902356 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0401 23:33:31.902390 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0401 23:33:31.902413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0401 23:33:31.904901 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0401 23:33:31.907101 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0401 23:33:31.912177 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0401 23:33:31.916945 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0401 23:33:31.919661 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0401 23:33:31.919684 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0401 23:33:31.919754 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0401 23:33:31.922212 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0401 23:33:31.924746 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0401 23:33:31.927382 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0401 23:33:31.929840 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0401 23:33:31.932180 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0401 23:33:31.932248 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0401 23:33:31.934660 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0401 23:33:31.937739 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0401 23:33:31.939282 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:31.941817 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:31.942559 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:31.942606 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:31.955901 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:31.975499 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:31.995164 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:32.018406 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:32.029830 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:32.033690 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 23:33:45.547259 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-01 23:33:45.547231491 +0000 UTC m=+13.748381678 I0401 23:33:46.241622 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:33:46.241616 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-01 23:33:46.241596683 +0000 UTC m=+14.442746860 I0401 23:33:46.241672 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-01 23:33:46.241662415 +0000 UTC m=+14.442812602 E0401 23:33:46.254953 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 23:33:46.255078 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-01 23:33:46.255066695 +0000 UTC m=+14.456216872 E0401 23:33:46.255111 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 23:33:46.257149 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:33:46.257378 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-01 23:33:46.257360709 +0000 UTC m=+14.458510896 E0401 23:33:46.265714 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0401 23:33:46.265821 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 23:33:46.265855 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 23:33:46.265888 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0401 23:33:46.272583 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:33:46.295782 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b5td5" condition "Approved" to 2026-04-01 23:33:46.295762329 +0000 UTC m=+14.496912516 I0401 23:33:46.309074 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b5td5" condition "Ready" to 2026-04-01 23:33:46.309061127 +0000 UTC m=+14.510211284 I0401 23:33:46.336461 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:33:46.336443661 +0000 UTC m=+14.537593848 I0401 23:33:46.355698 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:33:46.355967 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:33:46.355961684 +0000 UTC m=+14.557111841 I0401 23:33:46.376319 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:33:51.266733 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:33:51.266719986 +0000 UTC m=+19.467870123 I0401 23:34:17.417133 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-01 23:34:17.417112859 +0000 UTC m=+45.618263036 I0401 23:34:17.417330 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:34:17.417439 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-01 23:34:17.417420616 +0000 UTC m=+45.618570763 I0401 23:34:17.427687 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-01 23:34:17.427673754 +0000 UTC m=+45.628823911 I0401 23:34:17.436945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:34:17.437031 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:34:17.437055 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-01 23:34:17.437049511 +0000 UTC m=+45.638199658 I0401 23:34:17.635749 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vp9kq" condition "Approved" to 2026-04-01 23:34:17.635735386 +0000 UTC m=+45.836885573 I0401 23:34:17.668159 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vp9kq" condition "Ready" to 2026-04-01 23:34:17.668143788 +0000 UTC m=+45.869293965 I0401 23:34:17.704229 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:34:17.704208384 +0000 UTC m=+45.905358611 I0401 23:34:17.724683 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:34:17.725162 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:34:17.725153219 +0000 UTC m=+45.926303386 I0401 23:34:17.737470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:34:17.749983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:11.828670 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:37:11.828737 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-01 23:37:11.82872657 +0000 UTC m=+220.029876747 I0401 23:37:11.829613 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-01 23:37:11.828598847 +0000 UTC m=+220.029749024 E0401 23:37:11.897885 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0401 23:37:11.898079 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-01 23:37:11.898063634 +0000 UTC m=+220.099213821 I0401 23:37:11.898197 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0401 23:37:11.901804 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:11.901940 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:37:11.901978 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-01 23:37:11.901967353 +0000 UTC m=+220.103117510 E0401 23:37:11.915504 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0401 23:37:11.915654 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0401 23:37:11.915719 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0401 23:37:11.915782 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0401 23:37:11.999471 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:37:11.999492 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-01 23:37:11.999473045 +0000 UTC m=+220.200623252 I0401 23:37:11.999525 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-01 23:37:11.999515486 +0000 UTC m=+220.200665673 I0401 23:37:12.179543 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:12.179845 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:37:12.179890 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-01 23:37:12.17987889 +0000 UTC m=+220.381029067 I0401 23:37:12.705570 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:12.940427 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-xbn2b" condition "Approved" to 2026-04-01 23:37:12.940400008 +0000 UTC m=+221.141550195 I0401 23:37:13.574058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-xbn2b" condition "Ready" to 2026-04-01 23:37:13.574047617 +0000 UTC m=+221.775197774 I0401 23:37:13.711268 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-5jdlv" condition "Approved" to 2026-04-01 23:37:13.711251941 +0000 UTC m=+221.912402118 I0401 23:37:13.846582 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-5jdlv" condition "Ready" to 2026-04-01 23:37:13.846564162 +0000 UTC m=+222.047714349 I0401 23:37:14.703111 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:37:14.703088759 +0000 UTC m=+222.904238936 I0401 23:37:15.310484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:15.311057 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:37:15.311045406 +0000 UTC m=+223.512195593 I0401 23:37:15.466483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:16.916907 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:37:16.916895629 +0000 UTC m=+225.118045786 I0401 23:37:16.987624 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-xbn2b" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:37:16.987609393 +0000 UTC m=+225.188759580 I0401 23:37:17.221678 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:37:17.221664324 +0000 UTC m=+225.422814501 I0401 23:37:17.272873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:17.273199 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:37:17.273193954 +0000 UTC m=+225.474344101 I0401 23:37:17.428487 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:37:17.454897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:40:13.164472 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-209.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:40:13.164450 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-209.nip.io-tls" condition "Ready" to 2026-04-01 23:40:13.164390116 +0000 UTC m=+401.365540293 I0401 23:40:13.164502 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-209.nip.io-tls" condition "Issuing" to 2026-04-01 23:40:13.164496198 +0000 UTC m=+401.365646345 I0401 23:40:13.181538 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:40:13.181601 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-209.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:40:13.181624 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-209.nip.io-tls" condition "Issuing" to 2026-04-01 23:40:13.181617326 +0000 UTC m=+401.382767493 I0401 23:40:13.340286 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-209.nip.io-tls-75pd4" condition "Approved" to 2026-04-01 23:40:13.340276317 +0000 UTC m=+401.541426474 I0401 23:40:13.359796 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-209.nip.io-tls-75pd4" condition "Ready" to 2026-04-01 23:40:13.359783888 +0000 UTC m=+401.560934045 I0401 23:40:13.387976 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-209.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:40:13.387965264 +0000 UTC m=+401.589115421 I0401 23:40:13.411067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:40:13.411324 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-209.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:40:13.411318402 +0000 UTC m=+401.612468559 I0401 23:40:13.427137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:40:13.427458 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-209.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:40:13.427450285 +0000 UTC m=+401.628600472 I0401 23:40:13.429239 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:41:28.810845 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:41:28.810931 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-01 23:41:28.810921314 +0000 UTC m=+477.012071461 I0401 23:41:28.811432 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-01 23:41:28.81075508 +0000 UTC m=+477.011905237 E0401 23:41:28.825644 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 23:41:28.825704 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-01 23:41:28.825693796 +0000 UTC m=+477.026843953 E0401 23:41:28.825975 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 23:41:28.826357 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:41:28.826540 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-01 23:41:28.826528595 +0000 UTC m=+477.027678782 E0401 23:41:28.843535 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0401 23:41:28.844110 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 23:41:28.844169 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 23:41:28.844445 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0401 23:41:28.848963 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:41:28.873942 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-44wnf" condition "Approved" to 2026-04-01 23:41:28.873923792 +0000 UTC m=+477.075073969 I0401 23:41:28.888634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-44wnf" condition "Ready" to 2026-04-01 23:41:28.888621723 +0000 UTC m=+477.089771880 I0401 23:41:28.918393 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:41:28.918362113 +0000 UTC m=+477.119512270 I0401 23:41:28.936559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:41:33.844148 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:41:33.844138669 +0000 UTC m=+482.045288816 I0401 23:42:22.050877 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-01 23:42:22.050817371 +0000 UTC m=+530.251967538 I0401 23:42:22.052093 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:42:22.052117 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-01 23:42:22.05211161 +0000 UTC m=+530.253261757 I0401 23:42:22.055799 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:42:22.055845 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-01 23:42:22.055830513 +0000 UTC m=+530.256980670 I0401 23:42:22.056174 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-01 23:42:22.056170302 +0000 UTC m=+530.257320449 I0401 23:42:22.056474 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:42:22.056514 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-01 23:42:22.056507399 +0000 UTC m=+530.257657546 I0401 23:42:22.056928 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-01 23:42:22.056925198 +0000 UTC m=+530.258075335 I0401 23:42:22.099288 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.099391 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-01 23:42:22.099382694 +0000 UTC m=+530.300532841 I0401 23:42:22.099464 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.099585 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:42:22.099628 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-01 23:42:22.099618209 +0000 UTC m=+530.300768366 I0401 23:42:22.100953 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.101000 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-01 23:42:22.100995901 +0000 UTC m=+530.302146048 I0401 23:42:22.220284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.278155 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-k8wsx" condition "Approved" to 2026-04-01 23:42:22.278121806 +0000 UTC m=+530.479271953 I0401 23:42:22.308950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.310499 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-k8wsx" condition "Ready" to 2026-04-01 23:42:22.310460954 +0000 UTC m=+530.511611101 I0401 23:42:22.350146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8lg5r" condition "Approved" to 2026-04-01 23:42:22.350124657 +0000 UTC m=+530.551274834 I0401 23:42:22.359906 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:22.359892176 +0000 UTC m=+530.561042313 I0401 23:42:22.388576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8lg5r" condition "Ready" to 2026-04-01 23:42:22.388562691 +0000 UTC m=+530.589712848 I0401 23:42:22.391701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.425970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-h4pcb" condition "Approved" to 2026-04-01 23:42:22.425949394 +0000 UTC m=+530.627099581 I0401 23:42:22.435591 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:22.43558115 +0000 UTC m=+530.636731297 I0401 23:42:22.658212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-h4pcb" condition "Ready" to 2026-04-01 23:42:22.65819682 +0000 UTC m=+530.859346967 I0401 23:42:22.983140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:22.983739 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:22.983726596 +0000 UTC m=+531.184876773 I0401 23:42:23.426637 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:23.426622333 +0000 UTC m=+531.627772480 I0401 23:42:23.481890 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:23.541959 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:23.541944618 +0000 UTC m=+531.743094765 I0401 23:42:23.579403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:23.657699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:23.731451 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:23.832135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:23.832656 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:23.83264405 +0000 UTC m=+532.033794227 I0401 23:42:24.484800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:24.491669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:39.523914 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" condition "Ready" to 2026-04-01 23:42:39.523896003 +0000 UTC m=+547.725046190 I0401 23:42:39.524293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:42:39.524316 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" condition "Issuing" to 2026-04-01 23:42:39.524310732 +0000 UTC m=+547.725460889 I0401 23:42:39.572115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22ppj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:39.572235 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:42:39.572265 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" condition "Issuing" to 2026-04-01 23:42:39.572258701 +0000 UTC m=+547.773408858 I0401 23:42:39.981003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-22ppj-fbqjl" condition "Approved" to 2026-04-01 23:42:39.98098234 +0000 UTC m=+548.182132517 I0401 23:42:40.030635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-22ppj-fbqjl" condition "Ready" to 2026-04-01 23:42:40.030618757 +0000 UTC m=+548.231768934 I0401 23:42:40.105362 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:42:40.105350259 +0000 UTC m=+548.306500416 I0401 23:42:40.144894 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22ppj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:42:40.228668 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-22ppj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-22ppj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:43:31.644494 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:43:31.644543 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-01 23:43:31.644534184 +0000 UTC m=+599.845684351 I0401 23:43:31.644554 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-01 23:43:31.644534834 +0000 UTC m=+599.845685011 I0401 23:43:31.663222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:43:31.663391 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-01 23:43:31.663383128 +0000 UTC m=+599.864533285 I0401 23:43:32.132081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:43:32.181993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-lhck7" condition "Approved" to 2026-04-01 23:43:32.181973902 +0000 UTC m=+600.383124099 I0401 23:43:32.203756 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-lhck7" condition "Ready" to 2026-04-01 23:43:32.203735742 +0000 UTC m=+600.404885929 I0401 23:43:32.241132 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:43:32.241117572 +0000 UTC m=+600.442267729 I0401 23:43:32.263479 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:43:32.263798 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:43:32.263789012 +0000 UTC m=+600.464939169 I0401 23:43:32.281254 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:43:32.281555 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:43:32.281547772 +0000 UTC m=+600.482697909 I0401 23:47:06.316850 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:47:06.316885 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-01 23:47:06.316878423 +0000 UTC m=+814.518028570 I0401 23:47:06.316866 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-01 23:47:06.316273249 +0000 UTC m=+814.517423436 I0401 23:47:06.338023 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:47:06.338738 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:47:06.338798 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-01 23:47:06.338789825 +0000 UTC m=+814.539940002 I0401 23:47:06.679295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-q2hfj" condition "Approved" to 2026-04-01 23:47:06.679282822 +0000 UTC m=+814.880432979 I0401 23:47:06.703018 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-q2hfj" condition "Ready" to 2026-04-01 23:47:06.703006835 +0000 UTC m=+814.904156992 I0401 23:47:06.740175 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:47:06.740157811 +0000 UTC m=+814.941307968 I0401 23:47:06.766128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:47:06.807855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:49:49.161179 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:49:49.161226 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-01 23:49:49.161205684 +0000 UTC m=+977.362355841 I0401 23:49:49.161284 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-01 23:49:49.161270856 +0000 UTC m=+977.362421053 I0401 23:49:49.474977 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:49:49.475071 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-01 23:49:49.475063605 +0000 UTC m=+977.676213752 I0401 23:49:50.003609 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:49:50.338494 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-npdvp" condition "Approved" to 2026-04-01 23:49:50.338480627 +0000 UTC m=+978.539630784 I0401 23:49:50.371925 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-npdvp" condition "Ready" to 2026-04-01 23:49:50.371902636 +0000 UTC m=+978.573052823 I0401 23:49:50.409961 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:49:50.409940518 +0000 UTC m=+978.611090685 I0401 23:49:50.442098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:51:55.669725 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:51:55.669762 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-01 23:51:55.669755066 +0000 UTC m=+1103.870905223 I0401 23:51:55.670423 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-01 23:51:55.670415961 +0000 UTC m=+1103.871566118 I0401 23:51:55.756509 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:51:55.756632 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-01 23:51:55.756623392 +0000 UTC m=+1103.957773759 I0401 23:51:55.973504 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:51:56.045280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-t6bln" condition "Approved" to 2026-04-01 23:51:56.045258918 +0000 UTC m=+1104.246409095 I0401 23:51:56.095734 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-t6bln" condition "Ready" to 2026-04-01 23:51:56.095721959 +0000 UTC m=+1104.296872106 I0401 23:51:56.141881 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:51:56.141868283 +0000 UTC m=+1104.343018440 I0401 23:51:56.195854 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:51:56.196843 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:51:56.196835913 +0000 UTC m=+1104.397986070 I0401 23:51:56.312406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:55:12.258888 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 23:55:12.258984 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-01 23:55:12.258974089 +0000 UTC m=+1300.460124266 I0401 23:55:12.259066 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-01 23:55:12.259045731 +0000 UTC m=+1300.460195928 I0401 23:55:12.309655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:55:12.309756 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-01 23:55:12.309748884 +0000 UTC m=+1300.510899031 I0401 23:55:12.469640 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:55:12.530343 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-xjq7n" condition "Approved" to 2026-04-01 23:55:12.530318893 +0000 UTC m=+1300.731469050 I0401 23:55:12.563308 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-xjq7n" condition "Ready" to 2026-04-01 23:55:12.56329406 +0000 UTC m=+1300.764444237 I0401 23:55:12.618613 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 23:55:12.618595566 +0000 UTC m=+1300.819745743 I0401 23:55:12.649629 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 23:55:12.708030 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"