I0413 17:06:05.521734 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0413 17:06:05.521859 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0413 17:06:05.521947 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0413 17:06:05.526080 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0413 17:06:05.526613 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0413 17:06:05.527068 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0413 17:06:05.527068 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0413 17:06:05.529817 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0413 17:06:05.545158 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0413 17:06:05.551055 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0413 17:06:05.551124 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0413 17:06:05.551163 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0413 17:06:05.551383 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0413 17:06:05.556426 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0413 17:06:05.559144 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0413 17:06:05.561492 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0413 17:06:05.561569 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0413 17:06:05.564101 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0413 17:06:05.567095 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0413 17:06:05.569958 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0413 17:06:05.573229 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0413 17:06:05.573768 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0413 17:06:05.577192 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0413 17:06:05.579001 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0413 17:06:05.581579 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0413 17:06:05.584734 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0413 17:06:05.587034 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0413 17:06:05.589050 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0413 17:06:05.590682 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0413 17:06:05.592351 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0413 17:06:05.592719 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0413 17:06:05.594783 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0413 17:06:05.602112 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0413 17:06:05.604705 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.604706 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.605181 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.605842 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.622613 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.639450 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.654588 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.669807 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.686538 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:05.688303 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 17:06:19.395147 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-13 17:06:19.395130218 +0000 UTC m=+13.907823405 I0413 17:06:20.170716 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-13 17:06:20.170701741 +0000 UTC m=+14.683394978 I0413 17:06:20.170804 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:06:20.170843 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 17:06:20.170836895 +0000 UTC m=+14.683530072 E0413 17:06:20.184344 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:06:20.184430 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-13 17:06:20.184422112 +0000 UTC m=+14.697115299 E0413 17:06:20.184455 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:06:20.191725 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:06:20.191795 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:06:20.191813 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 17:06:20.1918074 +0000 UTC m=+14.704500587 E0413 17:06:20.201256 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0413 17:06:20.201954 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:06:20.202002 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:06:20.202065 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0413 17:06:20.226005 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-4rknk" condition "Approved" to 2026-04-13 17:06:20.225995479 +0000 UTC m=+14.738688666 I0413 17:06:20.238001 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-4rknk" condition "Ready" to 2026-04-13 17:06:20.237992554 +0000 UTC m=+14.750685741 I0413 17:06:20.268229 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:06:20.268217366 +0000 UTC m=+14.780910563 I0413 17:06:20.291978 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:06:25.202592 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:06:25.202577976 +0000 UTC m=+19.715271193 I0413 17:06:49.113772 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:06:49.114057 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-13 17:06:49.114040418 +0000 UTC m=+43.626733595 I0413 17:06:49.114333 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 17:06:49.114315564 +0000 UTC m=+43.627008791 I0413 17:06:49.127668 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-13 17:06:49.127656466 +0000 UTC m=+43.640349643 I0413 17:06:49.551757 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:06:49.551933 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:06:49.551950 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 17:06:49.551945434 +0000 UTC m=+44.064638611 I0413 17:06:49.761860 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-d4xst" condition "Approved" to 2026-04-13 17:06:49.761848527 +0000 UTC m=+44.274541714 I0413 17:06:49.790054 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-d4xst" condition "Ready" to 2026-04-13 17:06:49.790039358 +0000 UTC m=+44.302732545 I0413 17:06:49.828497 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:06:49.828479795 +0000 UTC m=+44.341172982 I0413 17:06:49.853654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:06:49.853935 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:06:49.853930029 +0000 UTC m=+44.366623206 I0413 17:06:49.875693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:06:49.876193 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:06:49.876184546 +0000 UTC m=+44.388877723 I0413 17:06:49.882353 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:11:09.493683 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-27.nip.io-tls" condition "Ready" to 2026-04-13 17:11:09.493650025 +0000 UTC m=+304.006343212 I0413 17:11:09.494061 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-27.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:11:09.494116 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-27.nip.io-tls" condition "Issuing" to 2026-04-13 17:11:09.494107396 +0000 UTC m=+304.006800593 I0413 17:11:09.508823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-27.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-27.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:11:09.508908 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-27.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:11:09.509112 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-27.nip.io-tls" condition "Issuing" to 2026-04-13 17:11:09.509099502 +0000 UTC m=+304.021792719 I0413 17:11:09.849970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-27.nip.io-tls-lhl9b" condition "Approved" to 2026-04-13 17:11:09.849961048 +0000 UTC m=+304.362654215 I0413 17:11:09.875316 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-27.nip.io-tls-lhl9b" condition "Ready" to 2026-04-13 17:11:09.87530413 +0000 UTC m=+304.387997317 I0413 17:11:09.901429 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-27.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:11:09.90141889 +0000 UTC m=+304.414112077 I0413 17:11:09.930777 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-27.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-27.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:11:09.931513 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-27.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:11:09.931503624 +0000 UTC m=+304.444196831 I0413 17:11:09.934806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-27.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-27.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:11:09.946093 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-27.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-27.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:11:09.946438 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-27.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:11:09.946430808 +0000 UTC m=+304.459123995 I0413 17:12:14.651947 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-13 17:12:14.651768413 +0000 UTC m=+369.164461590 I0413 17:12:14.652249 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:12:14.652386 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 17:12:14.652372015 +0000 UTC m=+369.165065232 E0413 17:12:14.687504 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:12:14.687948 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-13 17:12:14.687932936 +0000 UTC m=+369.200626143 E0413 17:12:14.688077 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 17:12:14.695217 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:12:14.695317 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:12:14.695343 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 17:12:14.69533594 +0000 UTC m=+369.208029137 E0413 17:12:14.771176 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0413 17:12:14.771331 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:12:14.771380 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 17:12:14.771455 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0413 17:12:14.831862 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k2dxf" condition "Approved" to 2026-04-13 17:12:14.831851153 +0000 UTC m=+369.344544340 I0413 17:12:14.848716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k2dxf" condition "Ready" to 2026-04-13 17:12:14.84870616 +0000 UTC m=+369.361399347 I0413 17:12:14.892191 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:12:14.892108024 +0000 UTC m=+369.404801201 I0413 17:12:14.911221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:12:19.776390 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:12:19.776357456 +0000 UTC m=+374.289050633 I0413 17:13:08.594393 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-13 17:13:08.594360206 +0000 UTC m=+423.107053393 I0413 17:13:08.594788 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:08.594838 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 17:13:08.594833844 +0000 UTC m=+423.107527031 I0413 17:13:08.596755 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 17:13:08.596744417 +0000 UTC m=+423.109437594 I0413 17:13:08.596913 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:08.596928 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-13 17:13:08.59692626 +0000 UTC m=+423.109619427 I0413 17:13:08.597038 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 17:13:08.597036032 +0000 UTC m=+423.109729209 I0413 17:13:08.597113 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:08.597125 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-13 17:13:08.597122743 +0000 UTC m=+423.109815920 I0413 17:13:08.715031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:08.715163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:08.715220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:08.715254 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:08.715273 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 17:13:08.715268034 +0000 UTC m=+423.227961211 I0413 17:13:08.719504 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:08.722112 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-13 17:13:08.722101982 +0000 UTC m=+423.234795179 I0413 17:13:08.725328 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:08.725358 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-13 17:13:08.725352238 +0000 UTC m=+423.238045415 I0413 17:13:09.603916 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:09.604994 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wnkrd" condition "Approved" to 2026-04-13 17:13:09.604977191 +0000 UTC m=+424.117670408 I0413 17:13:09.655829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:09.656626 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ttlxk" condition "Approved" to 2026-04-13 17:13:09.656614576 +0000 UTC m=+424.169307773 I0413 17:13:09.956842 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wnkrd" condition "Ready" to 2026-04-13 17:13:09.956832278 +0000 UTC m=+424.469525455 I0413 17:13:09.957184 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ttlxk" condition "Ready" to 2026-04-13 17:13:09.957171333 +0000 UTC m=+424.469864510 I0413 17:13:10.292385 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-ms8gd" condition "Approved" to 2026-04-13 17:13:10.292368666 +0000 UTC m=+424.805061883 I0413 17:13:10.549833 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-ms8gd" condition "Ready" to 2026-04-13 17:13:10.549820706 +0000 UTC m=+425.062513893 I0413 17:13:10.956922 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:10.956904558 +0000 UTC m=+425.469597775 I0413 17:13:10.957079 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:10.957067761 +0000 UTC m=+425.469760938 I0413 17:13:12.154779 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:12.156209 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.022565 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:13.022556055 +0000 UTC m=+427.535249232 I0413 17:13:13.022935 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:13.022925342 +0000 UTC m=+427.535618519 I0413 17:13:13.095152 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:13.09513992 +0000 UTC m=+427.607833097 I0413 17:13:13.337014 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:13.336953399 +0000 UTC m=+427.849646586 I0413 17:13:13.337638 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.338756 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:13.338729298 +0000 UTC m=+427.851422515 I0413 17:13:13.339362 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.342708 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.371876 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.649146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.649224 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:13.653523 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:29.528398 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" condition "Ready" to 2026-04-13 17:13:29.528362076 +0000 UTC m=+444.041055253 I0413 17:13:29.528837 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:29.528879 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" condition "Issuing" to 2026-04-13 17:13:29.528868914 +0000 UTC m=+444.041562111 I0413 17:13:29.543663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-77zvs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:29.543858 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" condition "Ready" to 2026-04-13 17:13:29.543849382 +0000 UTC m=+444.056542569 I0413 17:13:29.666274 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-77zvs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:29.706318 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-77zvs-xx47j" condition "Approved" to 2026-04-13 17:13:29.70630829 +0000 UTC m=+444.219001477 I0413 17:13:29.731354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-77zvs-xx47j" condition "Ready" to 2026-04-13 17:13:29.731344924 +0000 UTC m=+444.244038111 I0413 17:13:29.763038 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:29.762998248 +0000 UTC m=+444.275691415 I0413 17:13:29.787717 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-77zvs-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-77zvs-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:44.415469 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-13 17:13:44.415452901 +0000 UTC m=+458.928146078 I0413 17:13:44.415595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:13:44.415630 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 17:13:44.415620923 +0000 UTC m=+458.928314110 I0413 17:13:44.432815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:44.433051 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-13 17:13:44.432975223 +0000 UTC m=+458.945668430 I0413 17:13:44.584945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:44.616513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-dsgc8" condition "Approved" to 2026-04-13 17:13:44.616499527 +0000 UTC m=+459.129192704 I0413 17:13:44.639254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-dsgc8" condition "Ready" to 2026-04-13 17:13:44.639242164 +0000 UTC m=+459.151935361 I0413 17:13:44.672558 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:44.672543231 +0000 UTC m=+459.185236408 I0413 17:13:44.692811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:13:44.693261 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:13:44.693250766 +0000 UTC m=+459.205943953 I0413 17:13:44.715936 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:03.105970 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-13 17:17:03.105929396 +0000 UTC m=+657.618622573 I0413 17:17:03.106285 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:17:03.106300 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 17:17:03.106297121 +0000 UTC m=+657.618990298 I0413 17:17:03.205760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:03.205885 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:17:03.205911 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 17:17:03.205904917 +0000 UTC m=+657.718598104 I0413 17:17:03.729644 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wmchh" condition "Approved" to 2026-04-13 17:17:03.729623438 +0000 UTC m=+658.242316655 I0413 17:17:03.824583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wmchh" condition "Ready" to 2026-04-13 17:17:03.82457117 +0000 UTC m=+658.337264347 I0413 17:17:03.988934 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:17:03.988919119 +0000 UTC m=+658.501612306 I0413 17:17:04.011533 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:04.011935 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:17:04.011928132 +0000 UTC m=+658.524621319 I0413 17:17:04.030699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:04.031010 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:17:04.031001972 +0000 UTC m=+658.543695169 I0413 17:17:49.114406 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-13 17:17:49.114387556 +0000 UTC m=+703.627080773 I0413 17:17:49.115155 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 17:17:49.115232 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-13 17:17:49.115224908 +0000 UTC m=+703.627918115 I0413 17:17:49.139075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:49.139119 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-13 17:17:49.139113718 +0000 UTC m=+703.651806885 I0413 17:17:49.378276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:49.413964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-ckf5m" condition "Approved" to 2026-04-13 17:17:49.413948414 +0000 UTC m=+703.926641601 I0413 17:17:49.433572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-ckf5m" condition "Ready" to 2026-04-13 17:17:49.433564377 +0000 UTC m=+703.946257554 I0413 17:17:49.467076 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 17:17:49.467062927 +0000 UTC m=+703.979756114 I0413 17:17:49.489235 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 17:17:49.551319 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"