I0419 11:01:10.039506 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0419 11:01:10.039603 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0419 11:01:10.039664 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0419 11:01:10.042965 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0419 11:01:10.043313 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0419 11:01:10.043399 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0419 11:01:10.043457 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0419 11:01:10.045891 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0419 11:01:10.061030 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0419 11:01:10.066099 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0419 11:01:10.066144 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0419 11:01:10.066148 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0419 11:01:10.072193 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0419 11:01:10.075194 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0419 11:01:10.077609 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0419 11:01:10.079958 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0419 11:01:10.081911 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0419 11:01:10.083712 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0419 11:01:10.089537 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0419 11:01:10.089564 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0419 11:01:10.089576 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0419 11:01:10.089753 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0419 11:01:10.092246 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0419 11:01:10.094924 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0419 11:01:10.097402 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0419 11:01:10.099904 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0419 11:01:10.101770 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0419 11:01:10.103638 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0419 11:01:10.105249 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0419 11:01:10.105316 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0419 11:01:10.110142 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0419 11:01:10.114154 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0419 11:01:10.116957 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0419 11:01:10.119563 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.119767 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.121547 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.121556 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.142290 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.157207 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.175254 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.189233 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.206905 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:10.219292 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 11:01:20.849331 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-19 11:01:20.849305036 +0000 UTC m=+10.846517680 I0419 11:01:21.504587 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-19 11:01:21.504573678 +0000 UTC m=+11.501786322 I0419 11:01:21.504656 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:01:21.504697 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-19 11:01:21.504685131 +0000 UTC m=+11.501897805 E0419 11:01:21.521864 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 11:01:21.522108 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-19 11:01:21.522098955 +0000 UTC m=+11.519311599 E0419 11:01:21.522222 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 11:01:21.525434 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:21.525509 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:01:21.525531 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-19 11:01:21.525524124 +0000 UTC m=+11.522736768 E0419 11:01:21.534649 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0419 11:01:21.534760 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 11:01:21.534814 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 11:01:21.534951 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0419 11:01:21.563431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-69btv" condition "Approved" to 2026-04-19 11:01:21.563420009 +0000 UTC m=+11.560632653 I0419 11:01:21.564249 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:21.573602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-69btv" condition "Ready" to 2026-04-19 11:01:21.573593063 +0000 UTC m=+11.570805697 I0419 11:01:21.665996 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:01:21.665987342 +0000 UTC m=+11.663199976 I0419 11:01:21.776396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:21.776802 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:01:21.776796422 +0000 UTC m=+11.774009066 I0419 11:01:21.783123 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:21.792014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:26.535203 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:01:26.535185788 +0000 UTC m=+16.532398412 I0419 11:01:51.822786 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-19 11:01:51.822759735 +0000 UTC m=+41.819972389 I0419 11:01:51.822801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:01:51.823059 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-19 11:01:51.823052923 +0000 UTC m=+41.820265567 I0419 11:01:51.838750 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-19 11:01:51.838737986 +0000 UTC m=+41.835950630 I0419 11:01:51.858622 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:51.858698 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-19 11:01:51.858688364 +0000 UTC m=+41.855901018 I0419 11:01:52.001652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:52.035217 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bp8bk" condition "Approved" to 2026-04-19 11:01:52.034552217 +0000 UTC m=+42.031764851 I0419 11:01:52.063783 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bp8bk" condition "Ready" to 2026-04-19 11:01:52.063773654 +0000 UTC m=+42.060986298 I0419 11:01:52.091442 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:01:52.091426628 +0000 UTC m=+42.088639302 I0419 11:01:52.115185 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:01:52.169511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:06:23.639646 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-183.nip.io-tls" condition "Ready" to 2026-04-19 11:06:23.639630741 +0000 UTC m=+313.636843405 I0419 11:06:23.640175 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-183.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:06:23.640296 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-183.nip.io-tls" condition "Issuing" to 2026-04-19 11:06:23.640282118 +0000 UTC m=+313.637494792 I0419 11:06:23.656911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-183.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-183.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:06:23.656977 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-183.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:06:23.657003 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-183.nip.io-tls" condition "Issuing" to 2026-04-19 11:06:23.656991811 +0000 UTC m=+313.654204445 I0419 11:06:23.821139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-183.nip.io-tls-7ctmp" condition "Approved" to 2026-04-19 11:06:23.821121391 +0000 UTC m=+313.818334035 I0419 11:06:23.857881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-183.nip.io-tls-7ctmp" condition "Ready" to 2026-04-19 11:06:23.857868544 +0000 UTC m=+313.855081208 I0419 11:06:23.886896 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-183.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:06:23.886881117 +0000 UTC m=+313.884093771 I0419 11:06:23.905895 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-183.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-183.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:07:23.940279 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-19 11:07:23.940239806 +0000 UTC m=+373.937452450 I0419 11:07:23.940282 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:07:23.940570 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-19 11:07:23.940557594 +0000 UTC m=+373.937770258 I0419 11:07:23.953954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:07:23.954000 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-19 11:07:23.953995854 +0000 UTC m=+373.951208488 E0419 11:07:23.957199 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 11:07:23.957310 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-19 11:07:23.957299548 +0000 UTC m=+373.954512182 E0419 11:07:23.957338 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 11:07:23.973746 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0419 11:07:23.973911 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 11:07:23.974093 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 11:07:23.974207 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0419 11:07:23.976251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:07:23.997557 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9chhb" condition "Approved" to 2026-04-19 11:07:23.997543238 +0000 UTC m=+373.994755892 I0419 11:07:24.014019 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9chhb" condition "Ready" to 2026-04-19 11:07:24.014001035 +0000 UTC m=+374.011213679 I0419 11:07:24.036184 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:07:24.036175536 +0000 UTC m=+374.033388180 I0419 11:07:24.058024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:07:24.096294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:07:28.974881 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:07:28.974860142 +0000 UTC m=+378.972072806 I0419 11:08:08.957617 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:08.957697 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-19 11:08:08.957685927 +0000 UTC m=+418.954898561 I0419 11:08:08.958331 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-19 11:08:08.958325943 +0000 UTC m=+418.955538577 I0419 11:08:08.958560 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:08.958579 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-19 11:08:08.95857593 +0000 UTC m=+418.955788554 I0419 11:08:08.958813 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-19 11:08:08.958809766 +0000 UTC m=+418.956022400 I0419 11:08:08.958976 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:08.958994 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-19 11:08:08.95899146 +0000 UTC m=+418.956204094 I0419 11:08:08.959212 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-19 11:08:08.959208926 +0000 UTC m=+418.956421550 I0419 11:08:08.985751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:08.985810 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:08.985834 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-19 11:08:08.985828762 +0000 UTC m=+418.983041396 I0419 11:08:09.002177 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.002247 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-19 11:08:09.002236953 +0000 UTC m=+418.999449617 I0419 11:08:09.009559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.009766 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-19 11:08:09.009755101 +0000 UTC m=+419.006967735 I0419 11:08:09.193696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.290426 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-4shhp" condition "Approved" to 2026-04-19 11:08:09.290414503 +0000 UTC m=+419.287627147 I0419 11:08:09.310305 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-4shhp" condition "Ready" to 2026-04-19 11:08:09.3102939 +0000 UTC m=+419.307506544 I0419 11:08:09.340345 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:09.340331832 +0000 UTC m=+419.337544476 I0419 11:08:09.364704 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.366045 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.408500 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-dzbrs" condition "Approved" to 2026-04-19 11:08:09.408481507 +0000 UTC m=+419.405694161 I0419 11:08:09.430516 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-dzbrs" condition "Ready" to 2026-04-19 11:08:09.430503508 +0000 UTC m=+419.427716142 I0419 11:08:09.462651 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:09.462633262 +0000 UTC m=+419.459845906 I0419 11:08:09.483994 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.484251 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:09.484246503 +0000 UTC m=+419.481459147 I0419 11:08:09.774853 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rf9px" condition "Approved" to 2026-04-19 11:08:09.774833444 +0000 UTC m=+419.772046088 I0419 11:08:09.823663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.869244 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:09.977256 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rf9px" condition "Ready" to 2026-04-19 11:08:09.977240127 +0000 UTC m=+419.974452761 I0419 11:08:10.469657 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:10.469643655 +0000 UTC m=+420.466856289 I0419 11:08:10.619641 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:10.620037 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:10.620029637 +0000 UTC m=+420.617242281 I0419 11:08:10.869094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:17.554748 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" condition "Ready" to 2026-04-19 11:08:17.554733992 +0000 UTC m=+427.551946636 I0419 11:08:17.555810 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:17.555833 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" condition "Issuing" to 2026-04-19 11:08:17.555828348 +0000 UTC m=+427.553040992 I0419 11:08:17.572658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n67sq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:17.572753 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:17.572785 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" condition "Issuing" to 2026-04-19 11:08:17.572777732 +0000 UTC m=+427.569990376 I0419 11:08:17.803683 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-n67sq-w7x5b" condition "Approved" to 2026-04-19 11:08:17.803645219 +0000 UTC m=+427.800857853 I0419 11:08:17.827091 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-n67sq-w7x5b" condition "Ready" to 2026-04-19 11:08:17.827079174 +0000 UTC m=+427.824291808 I0419 11:08:17.897710 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:17.897701108 +0000 UTC m=+427.894913742 I0419 11:08:17.969502 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-n67sq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-n67sq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:31.361772 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-19 11:08:31.361714219 +0000 UTC m=+441.358926873 I0419 11:08:31.361838 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:31.361986 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-19 11:08:31.361978076 +0000 UTC m=+441.359190700 I0419 11:08:31.421198 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:31.421315 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:08:31.421343 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-19 11:08:31.421332574 +0000 UTC m=+441.418545248 I0419 11:08:32.487306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:32.500859 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ggtt9" condition "Approved" to 2026-04-19 11:08:32.500842529 +0000 UTC m=+442.498055173 I0419 11:08:32.524883 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ggtt9" condition "Ready" to 2026-04-19 11:08:32.524869638 +0000 UTC m=+442.522082282 I0419 11:08:32.904977 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:32.904955213 +0000 UTC m=+442.902167887 I0419 11:08:33.003632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:08:33.004282 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:08:33.004272796 +0000 UTC m=+443.001485450 I0419 11:08:33.172400 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:11:41.844423 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-19 11:11:41.844372013 +0000 UTC m=+631.841584687 I0419 11:11:41.844854 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:11:41.844927 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-19 11:11:41.844911205 +0000 UTC m=+631.842123869 I0419 11:11:41.870034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:11:41.870155 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-19 11:11:41.870146502 +0000 UTC m=+631.867359136 I0419 11:11:42.058492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:11:42.099163 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ltgkx" condition "Approved" to 2026-04-19 11:11:42.099148089 +0000 UTC m=+632.096360723 I0419 11:11:42.127306 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-ltgkx" condition "Ready" to 2026-04-19 11:11:42.127296028 +0000 UTC m=+632.124508662 I0419 11:11:42.156554 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:11:42.156539002 +0000 UTC m=+632.153751636 I0419 11:11:42.177053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:11:42.232451 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:12:21.000332 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 11:12:21.001258 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-19 11:12:21.001251763 +0000 UTC m=+670.998464397 I0419 11:12:21.000865 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-19 11:12:21.000850814 +0000 UTC m=+670.998063458 I0419 11:12:21.041597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:12:21.041667 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-19 11:12:21.04166088 +0000 UTC m=+671.038873504 I0419 11:12:21.220664 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:12:21.254135 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nhlmg" condition "Approved" to 2026-04-19 11:12:21.254125625 +0000 UTC m=+671.251338269 I0419 11:12:21.286298 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nhlmg" condition "Ready" to 2026-04-19 11:12:21.286284269 +0000 UTC m=+671.283496933 I0419 11:12:21.315357 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:12:21.315344309 +0000 UTC m=+671.312556953 I0419 11:12:21.334132 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 11:12:21.334615 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 11:12:21.334606069 +0000 UTC m=+671.331818743 I0419 11:12:21.354008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"