I0416 10:17:13.466331 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0416 10:17:13.466531 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0416 10:17:13.466650 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0416 10:17:13.471148 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0416 10:17:13.471655 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0416 10:17:13.471775 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0416 10:17:13.471796 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0416 10:17:13.477785 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0416 10:17:13.498489 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0416 10:17:13.504986 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0416 10:17:13.508362 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0416 10:17:13.508473 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0416 10:17:13.511618 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0416 10:17:13.514550 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0416 10:17:13.517426 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0416 10:17:13.525857 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0416 10:17:13.525962 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0416 10:17:13.530564 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0416 10:17:13.532584 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0416 10:17:13.534807 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0416 10:17:13.536762 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0416 10:17:13.539369 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0416 10:17:13.541995 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0416 10:17:13.544946 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0416 10:17:13.545015 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0416 10:17:13.546866 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0416 10:17:13.549486 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0416 10:17:13.549536 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0416 10:17:13.549550 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0416 10:17:13.549774 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0416 10:17:13.554211 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0416 10:17:13.558088 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0416 10:17:13.562105 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0416 10:17:13.564760 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.565493 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.565553 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.565726 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.565773 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.565991 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.566274 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.566497 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.566502 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:13.705644 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 10:17:46.698985 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-16 10:17:46.698968986 +0000 UTC m=+33.264010096 I0416 10:17:47.627201 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-16 10:17:47.627189924 +0000 UTC m=+34.192231014 I0416 10:17:47.627649 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:47.633724 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-16 10:17:47.633704972 +0000 UTC m=+34.198746092 I0416 10:17:47.724294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:47.724372 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:47.724387 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-16 10:17:47.724381927 +0000 UTC m=+34.289423007 E0416 10:17:47.733985 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 10:17:47.734047 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-16 10:17:47.734040805 +0000 UTC m=+34.299081895 E0416 10:17:47.734070 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 10:17:47.783689 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0416 10:17:47.783909 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 10:17:47.783953 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 10:17:47.783980 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0416 10:17:47.811211 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ddsmk" condition "Approved" to 2026-04-16 10:17:47.811200974 +0000 UTC m=+34.376242054 I0416 10:17:47.831829 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ddsmk" condition "Ready" to 2026-04-16 10:17:47.831817291 +0000 UTC m=+34.396858401 I0416 10:17:47.855618 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:47.855607971 +0000 UTC m=+34.420649061 I0416 10:17:47.902013 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:52.584473 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-16 10:17:52.58445854 +0000 UTC m=+39.149499630 I0416 10:17:52.584878 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:52.584926 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-16 10:17:52.58491846 +0000 UTC m=+39.149959550 I0416 10:17:52.611588 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-16 10:17:52.611575715 +0000 UTC m=+39.176616795 I0416 10:17:52.615119 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:52.615182 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:52.615200 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-16 10:17:52.615194696 +0000 UTC m=+39.180235777 I0416 10:17:52.784303 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:52.784293949 +0000 UTC m=+39.349335029 I0416 10:17:53.090929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hpj5v" condition "Approved" to 2026-04-16 10:17:53.090914829 +0000 UTC m=+39.655955919 I0416 10:17:53.127061 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hpj5v" condition "Ready" to 2026-04-16 10:17:53.127044058 +0000 UTC m=+39.692085178 I0416 10:17:53.167550 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:53.167531395 +0000 UTC m=+39.732572525 I0416 10:17:53.190950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:53.191540 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:53.191529459 +0000 UTC m=+39.756570569 I0416 10:17:53.197899 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:53.216142 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:53.216415 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:53.216408054 +0000 UTC m=+39.781449124 I0416 10:17:58.132350 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:58.132391 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-16 10:17:58.132382773 +0000 UTC m=+44.697423863 I0416 10:17:58.132450 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-16 10:17:58.132437254 +0000 UTC m=+44.697478374 E0416 10:17:58.145703 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 10:17:58.145794 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-16 10:17:58.145786557 +0000 UTC m=+44.710827647 I0416 10:17:58.145871 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 10:17:58.149486 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.149546 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-16 10:17:58.149540401 +0000 UTC m=+44.714581491 I0416 10:17:58.158459 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-16 10:17:58.158444264 +0000 UTC m=+44.723485354 E0416 10:17:58.158501 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0416 10:17:58.158711 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:58.158745 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-16 10:17:58.158738611 +0000 UTC m=+44.723779711 E0416 10:17:58.158903 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 10:17:58.158949 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 10:17:58.159052 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0416 10:17:58.178396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.178485 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-16 10:17:58.178475448 +0000 UTC m=+44.743516538 I0416 10:17:58.387064 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.424092 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-4cf5m" condition "Approved" to 2026-04-16 10:17:58.424077384 +0000 UTC m=+44.989118494 I0416 10:17:58.459126 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-4cf5m" condition "Ready" to 2026-04-16 10:17:58.459114478 +0000 UTC m=+45.024155568 I0416 10:17:58.496719 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:58.49669839 +0000 UTC m=+45.061739500 I0416 10:17:58.554924 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.625012 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.660634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9sk97" condition "Approved" to 2026-04-16 10:17:58.660618276 +0000 UTC m=+45.225659366 I0416 10:17:58.679651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9sk97" condition "Ready" to 2026-04-16 10:17:58.679630087 +0000 UTC m=+45.244671197 I0416 10:17:58.737460 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-16 10:17:58.737439206 +0000 UTC m=+45.302480316 I0416 10:17:58.737718 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:58.737805 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-16 10:17:58.737790024 +0000 UTC m=+45.302831134 I0416 10:17:58.754504 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.754622 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-16 10:17:58.754610315 +0000 UTC m=+45.319651415 I0416 10:17:58.775486 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:58.804121 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-kw8p6" condition "Approved" to 2026-04-16 10:17:58.804093167 +0000 UTC m=+45.369134287 I0416 10:17:58.848340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-kw8p6" condition "Ready" to 2026-04-16 10:17:58.84832185 +0000 UTC m=+45.413362960 I0416 10:17:59.193817 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:59.19379926 +0000 UTC m=+45.758840370 I0416 10:17:59.293016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:59.293369 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:17:59.293359496 +0000 UTC m=+45.858400606 I0416 10:17:59.482922 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:17:59.482951 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-16 10:17:59.482945353 +0000 UTC m=+46.047986433 I0416 10:17:59.483060 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-16 10:17:59.483044946 +0000 UTC m=+46.048086066 I0416 10:17:59.540854 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:59.595063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:59.691325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:17:59.691420 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-16 10:17:59.691412088 +0000 UTC m=+46.256453178 I0416 10:18:00.112413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:18:00.161248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-f69kg" condition "Approved" to 2026-04-16 10:18:00.161235077 +0000 UTC m=+46.726276157 I0416 10:18:00.212302 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-f69kg" condition "Ready" to 2026-04-16 10:18:00.212265194 +0000 UTC m=+46.777306304 I0416 10:18:00.229872 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-04-16 10:18:00.229858612 +0000 UTC m=+46.794899702 I0416 10:18:00.742827 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:18:00.742809678 +0000 UTC m=+47.307850788 I0416 10:18:00.900905 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:18:00.901247 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:18:00.901238139 +0000 UTC m=+47.466279249 I0416 10:18:00.959212 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-04-16 10:18:00.959201012 +0000 UTC m=+47.524242102 I0416 10:18:01.145877 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:18:01.297075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:18:03.159639 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:18:03.159624765 +0000 UTC m=+49.724665875 I0416 10:18:06.454108 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-9sk97" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:18:06.454089273 +0000 UTC m=+53.019130393 I0416 10:18:13.042182 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:18:13.042170401 +0000 UTC m=+59.607211471 I0416 10:18:13.078299 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:18:13.078588 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:18:13.078579566 +0000 UTC m=+59.643620646 I0416 10:18:13.287367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:18:13.292802 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:28:05.176164 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready" to 2026-04-16 10:28:05.176136656 +0000 UTC m=+651.741177746 I0416 10:28:05.177129 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-141.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 10:28:05.177220 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Issuing" to 2026-04-16 10:28:05.17720578 +0000 UTC m=+651.742246870 I0416 10:28:05.237080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:28:05.239022 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready" to 2026-04-16 10:28:05.239007598 +0000 UTC m=+651.804048718 I0416 10:28:05.363761 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:28:05.401382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-141.nip.io-tls-5svvw" condition "Approved" to 2026-04-16 10:28:05.40136534 +0000 UTC m=+651.966406420 I0416 10:28:05.429382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-141.nip.io-tls-5svvw" condition "Ready" to 2026-04-16 10:28:05.429370043 +0000 UTC m=+651.994411123 I0416 10:28:05.602077 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:28:05.602065948 +0000 UTC m=+652.167107038 I0416 10:28:05.688243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:28:05.688523 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:28:05.688518003 +0000 UTC m=+652.253559083 I0416 10:28:05.715567 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-141.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-141.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 10:28:05.715996 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-141.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 10:28:05.715986654 +0000 UTC m=+652.281027744