I0319 09:02:27.860154 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0319 09:02:27.860268 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0319 09:02:27.860355 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0319 09:02:27.865287 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0319 09:02:27.865889 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0319 09:02:27.865899 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0319 09:02:27.865943 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0319 09:02:27.869231 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0319 09:02:28.055722 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0319 09:02:28.055983 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0319 09:02:28.056016 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0319 09:02:28.060148 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0319 09:02:28.066954 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0319 09:02:28.069515 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0319 09:02:28.071873 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0319 09:02:28.071958 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0319 09:02:28.074308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0319 09:02:28.076416 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0319 09:02:28.078974 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0319 09:02:28.083881 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0319 09:02:28.087523 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0319 09:02:28.090589 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0319 09:02:28.092423 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0319 09:02:28.094697 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0319 09:02:28.096833 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0319 09:02:28.098489 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0319 09:02:28.098523 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0319 09:02:28.098531 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0319 09:02:28.098540 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0319 09:02:28.100587 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0319 09:02:28.106720 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0319 09:02:28.111178 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0319 09:02:28.115266 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0319 09:02:28.117464 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.117988 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.118122 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.118812 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.118920 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.119112 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.119165 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.119557 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.119808 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:28.151446 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:02:53.834542 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-19 09:02:53.8345261 +0000 UTC m=+26.009831234 I0319 09:02:54.539540 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:02:54.539581 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-19 09:02:54.539572099 +0000 UTC m=+26.714877233 I0319 09:02:54.539734 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-19 09:02:54.539720352 +0000 UTC m=+26.715025486 E0319 09:02:54.555357 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:02:54.555451 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-19 09:02:54.55544125 +0000 UTC m=+26.730746364 E0319 09:02:54.555502 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:02:54.557373 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:02:54.557428 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-19 09:02:54.557416592 +0000 UTC m=+26.732721696 E0319 09:02:54.576590 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0319 09:02:54.576719 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:02:54.576970 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:02:54.577221 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0319 09:02:54.579857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:02:54.620673 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rj4vp" condition "Approved" to 2026-03-19 09:02:54.620657208 +0000 UTC m=+26.795962352 I0319 09:02:54.638393 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rj4vp" condition "Ready" to 2026-03-19 09:02:54.638381459 +0000 UTC m=+26.813686573 I0319 09:02:54.658730 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:02:54.658711705 +0000 UTC m=+26.834016869 I0319 09:02:54.679675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:02:54.680113 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:02:54.680101713 +0000 UTC m=+26.855406847 I0319 09:02:54.692456 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:02:54.692833 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:02:54.692822516 +0000 UTC m=+26.868127660 I0319 09:02:59.577170 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:02:59.577154839 +0000 UTC m=+31.752459983 I0319 09:03:21.951116 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-19 09:03:21.951100049 +0000 UTC m=+54.126405163 I0319 09:03:21.951137 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:21.951386 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-19 09:03:21.951370875 +0000 UTC m=+54.126676039 I0319 09:03:21.974455 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-19 09:03:21.974381409 +0000 UTC m=+54.149686523 I0319 09:03:21.979331 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:21.979408 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:21.979434 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-19 09:03:21.979427406 +0000 UTC m=+54.154732520 I0319 09:03:22.498751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:22.505847 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-nrvqn" condition "Approved" to 2026-03-19 09:03:22.505832525 +0000 UTC m=+54.681137669 I0319 09:03:22.542899 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-nrvqn" condition "Ready" to 2026-03-19 09:03:22.542848339 +0000 UTC m=+54.718153473 I0319 09:03:22.588007 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:22.587996227 +0000 UTC m=+54.763301331 I0319 09:03:22.613538 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.153941 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:05:59.154026 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-19 09:05:59.154015053 +0000 UTC m=+211.329320197 I0319 09:05:59.154003 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-19 09:05:59.153984132 +0000 UTC m=+211.329289246 E0319 09:05:59.174170 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:05:59.174265 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-19 09:05:59.174253124 +0000 UTC m=+211.349558258 I0319 09:05:59.174992 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:05:59.177527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.177688 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-19 09:05:59.177675158 +0000 UTC m=+211.352980312 E0319 09:05:59.188492 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0319 09:05:59.188569 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:05:59.188590 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0319 09:05:59.188635 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0319 09:05:59.194157 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-19 09:05:59.194149757 +0000 UTC m=+211.369454881 I0319 09:05:59.194529 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:05:59.194602 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-19 09:05:59.194596217 +0000 UTC m=+211.369901331 I0319 09:05:59.217022 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.217100 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-19 09:05:59.217094077 +0000 UTC m=+211.392399181 I0319 09:05:59.321797 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.328781 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.350292 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-5vwg7" condition "Approved" to 2026-03-19 09:05:59.3502823 +0000 UTC m=+211.525587414 I0319 09:05:59.360673 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-rksmk" condition "Approved" to 2026-03-19 09:05:59.360656276 +0000 UTC m=+211.535961420 I0319 09:05:59.379330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-5vwg7" condition "Ready" to 2026-03-19 09:05:59.379318132 +0000 UTC m=+211.554623246 I0319 09:05:59.382038 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-rksmk" condition "Ready" to 2026-03-19 09:05:59.382023911 +0000 UTC m=+211.557329035 I0319 09:05:59.409305 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:05:59.409293355 +0000 UTC m=+211.584598469 I0319 09:05:59.433084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.433775 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:05:59.433767149 +0000 UTC m=+211.609072263 I0319 09:05:59.447806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:59.460459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:04.189424 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:04.189409594 +0000 UTC m=+216.364714708 I0319 09:06:04.204255 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-rksmk" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:04.204241658 +0000 UTC m=+216.379546772 I0319 09:06:04.236722 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:04.236701305 +0000 UTC m=+216.412006449 I0319 09:06:04.257028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:56.761956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-23.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:08:56.761918 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-23.nip.io-tls" condition "Ready" to 2026-03-19 09:08:56.76189974 +0000 UTC m=+388.937204874 I0319 09:08:56.762602 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-23.nip.io-tls" condition "Issuing" to 2026-03-19 09:08:56.762034253 +0000 UTC m=+388.937339397 I0319 09:08:56.780835 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:56.780979 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-23.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:08:56.781008 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-23.nip.io-tls" condition "Issuing" to 2026-03-19 09:08:56.780999472 +0000 UTC m=+388.956304616 I0319 09:08:56.917102 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:56.924876 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-23.nip.io-tls-kd5dv" condition "Approved" to 2026-03-19 09:08:56.924864236 +0000 UTC m=+389.100169350 I0319 09:08:56.942188 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-23.nip.io-tls-kd5dv" condition "Ready" to 2026-03-19 09:08:56.942173059 +0000 UTC m=+389.117478193 I0319 09:08:56.970248 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:56.970235639 +0000 UTC m=+389.145540753 I0319 09:08:56.987634 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:56.987975 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:56.98796801 +0000 UTC m=+389.163273124 I0319 09:08:57.011260 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:57.011269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-23.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-23.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:57.011836 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-23.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:57.011825096 +0000 UTC m=+389.187130240 I0319 09:10:08.133635 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:10:08.133620952 +0000 UTC m=+460.308926066 I0319 09:10:08.133660 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:08.133931 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-19 09:10:08.133890278 +0000 UTC m=+460.309195422 E0319 09:10:08.143941 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:10:08.144001 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-19 09:10:08.143996311 +0000 UTC m=+460.319301415 E0319 09:10:08.144020 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:10:08.146302 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:08.146366 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:10:08.146358973 +0000 UTC m=+460.321664087 E0319 09:10:08.154826 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0319 09:10:08.154901 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:10:08.154932 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:10:08.154966 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0319 09:10:08.160929 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:08.161027 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:10:08.161017137 +0000 UTC m=+460.336322271 I0319 09:10:08.168337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hq66q" condition "Approved" to 2026-03-19 09:10:08.168320509 +0000 UTC m=+460.343625613 I0319 09:10:08.170558 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:10:08.170547568 +0000 UTC m=+460.345852692 I0319 09:10:08.177879 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:08.179277 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hq66q" condition "Ready" to 2026-03-19 09:10:08.179265621 +0000 UTC m=+460.354570765 I0319 09:10:08.198956 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:08.198942996 +0000 UTC m=+460.374248130 I0319 09:10:08.217709 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:08.257040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:13.155277 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:13.155263476 +0000 UTC m=+465.330568620 I0319 09:10:49.222334 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:49.222381 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-19 09:10:49.222374447 +0000 UTC m=+501.397679561 I0319 09:10:49.222599 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-19 09:10:49.222594002 +0000 UTC m=+501.397899106 I0319 09:10:49.235982 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:49.236224 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-19 09:10:49.236215753 +0000 UTC m=+501.411520887 I0319 09:10:49.236361 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-19 09:10:49.236337406 +0000 UTC m=+501.411642510 I0319 09:10:49.242367 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-19 09:10:49.242345489 +0000 UTC m=+501.417650603 I0319 09:10:49.242890 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:49.242924 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-19 09:10:49.242916151 +0000 UTC m=+501.418221255 I0319 09:10:49.265893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.265977 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-19 09:10:49.265969552 +0000 UTC m=+501.441274646 I0319 09:10:49.271380 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.271479 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-19 09:10:49.271472952 +0000 UTC m=+501.446778056 I0319 09:10:49.281701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.281947 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:49.281981 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-19 09:10:49.281973165 +0000 UTC m=+501.457278279 I0319 09:10:49.391371 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.410600 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bntwd" condition "Approved" to 2026-03-19 09:10:49.410585709 +0000 UTC m=+501.585890853 I0319 09:10:49.422324 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8dndm" condition "Approved" to 2026-03-19 09:10:49.422313608 +0000 UTC m=+501.597618722 I0319 09:10:49.428441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bntwd" condition "Ready" to 2026-03-19 09:10:49.428425624 +0000 UTC m=+501.603730758 I0319 09:10:49.437749 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8dndm" condition "Ready" to 2026-03-19 09:10:49.43773942 +0000 UTC m=+501.613044534 I0319 09:10:49.455174 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:49.455164055 +0000 UTC m=+501.630469199 I0319 09:10:49.462429 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:49.462415616 +0000 UTC m=+501.637720730 I0319 09:10:49.476769 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.480673 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.483645 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:49.710862 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-zdpkc" condition "Approved" to 2026-03-19 09:10:49.710847138 +0000 UTC m=+501.886152252 I0319 09:10:49.920303 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-zdpkc" condition "Ready" to 2026-03-19 09:10:49.92029356 +0000 UTC m=+502.095598664 I0319 09:10:50.661089 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:50.661071742 +0000 UTC m=+502.836376846 I0319 09:10:50.707397 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:50.755392 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:50.899465 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:50.900218 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:50.900205579 +0000 UTC m=+503.075510693 I0319 09:10:51.054798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:57.429638 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:10:57.429689 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" condition "Issuing" to 2026-03-19 09:10:57.429681083 +0000 UTC m=+509.604986187 I0319 09:10:57.429732 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" condition "Ready" to 2026-03-19 09:10:57.429712113 +0000 UTC m=+509.605017247 I0319 09:10:57.446641 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:57.446723 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" condition "Ready" to 2026-03-19 09:10:57.44671477 +0000 UTC m=+509.622019884 I0319 09:10:57.591482 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:57.625609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-wwvjq-ktg47" condition "Approved" to 2026-03-19 09:10:57.62558497 +0000 UTC m=+509.800890114 I0319 09:10:57.643070 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-wwvjq-ktg47" condition "Ready" to 2026-03-19 09:10:57.643057496 +0000 UTC m=+509.818362610 I0319 09:10:57.671125 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:10:57.671110047 +0000 UTC m=+509.846415171 I0319 09:10:57.689405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:10:57.732697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-wwvjq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:51.942098 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-19 09:11:51.942073937 +0000 UTC m=+564.117379121 I0319 09:11:51.942290 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:11:51.942373 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-19 09:11:51.942356763 +0000 UTC m=+564.117661897 I0319 09:11:52.147192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:52.147302 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-19 09:11:52.14729193 +0000 UTC m=+564.322597074 I0319 09:11:52.529756 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:52.983659 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ljjjp" condition "Approved" to 2026-03-19 09:11:52.983643586 +0000 UTC m=+565.158948690 I0319 09:11:53.024473 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ljjjp" condition "Ready" to 2026-03-19 09:11:53.024459229 +0000 UTC m=+565.199764343 I0319 09:11:53.064642 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:11:53.064606918 +0000 UTC m=+565.239912032 I0319 09:11:53.083288 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:16:05.021674 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:16:05.021747 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-19 09:16:05.021738617 +0000 UTC m=+817.197043731 I0319 09:16:05.022112 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-19 09:16:05.022090624 +0000 UTC m=+817.197395768 I0319 09:16:05.039595 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:16:05.039669 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-19 09:16:05.03966376 +0000 UTC m=+817.214968864 I0319 09:16:05.165383 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:16:05.201794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nxj6b" condition "Approved" to 2026-03-19 09:16:05.201779664 +0000 UTC m=+817.377084768 I0319 09:16:05.220798 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-nxj6b" condition "Ready" to 2026-03-19 09:16:05.220786771 +0000 UTC m=+817.396091885 I0319 09:16:05.251414 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:16:05.25140126 +0000 UTC m=+817.426706364 I0319 09:16:05.362563 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:16:05.362879 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:16:05.362872766 +0000 UTC m=+817.538177870 I0319 09:16:05.441948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:16:05.445794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:51.661181 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-19 09:18:51.661114275 +0000 UTC m=+983.836419429 I0319 09:18:51.661266 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:18:51.661339 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-19 09:18:51.661329319 +0000 UTC m=+983.836634473 I0319 09:18:51.686084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:51.686149 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:18:51.686164 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-19 09:18:51.686157747 +0000 UTC m=+983.861462861 I0319 09:18:51.914434 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-r4bgc" condition "Approved" to 2026-03-19 09:18:51.914415985 +0000 UTC m=+984.089721129 I0319 09:18:51.933702 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-r4bgc" condition "Ready" to 2026-03-19 09:18:51.933692988 +0000 UTC m=+984.108998092 I0319 09:18:51.979654 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:18:51.97964366 +0000 UTC m=+984.154948764 I0319 09:18:52.020658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:52.020972 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:18:52.020965279 +0000 UTC m=+984.196270393 I0319 09:18:52.025389 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:52.057635 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:52.060405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:18:52.060713 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:18:52.060704051 +0000 UTC m=+984.236009155 I0319 09:20:49.408624 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:20:49.408717 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-19 09:20:49.408707567 +0000 UTC m=+1101.584012701 I0319 09:20:49.409175 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-19 09:20:49.409162467 +0000 UTC m=+1101.584467581 I0319 09:20:49.428598 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:20:49.428679 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:20:49.428707 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-19 09:20:49.428698935 +0000 UTC m=+1101.604004079 I0319 09:20:49.598139 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-77jd7" condition "Approved" to 2026-03-19 09:20:49.598124668 +0000 UTC m=+1101.773429812 I0319 09:20:49.626924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-77jd7" condition "Ready" to 2026-03-19 09:20:49.626914823 +0000 UTC m=+1101.802219927 I0319 09:20:49.700599 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:20:49.700588256 +0000 UTC m=+1101.875893360 I0319 09:20:49.728992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:20:49.729393 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:20:49.729384963 +0000 UTC m=+1101.904690087 I0319 09:20:50.350560 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:24:43.987018 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:24:43.987101 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-19 09:24:43.987095208 +0000 UTC m=+1336.162400312 I0319 09:24:43.987168 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-19 09:24:43.987149489 +0000 UTC m=+1336.162454613 I0319 09:24:44.010204 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:24:44.010298 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-19 09:24:44.010287649 +0000 UTC m=+1336.185592793 I0319 09:24:44.133269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:24:44.170579 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ksgkb" condition "Approved" to 2026-03-19 09:24:44.170570097 +0000 UTC m=+1336.345875201 I0319 09:24:44.218679 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ksgkb" condition "Ready" to 2026-03-19 09:24:44.21866884 +0000 UTC m=+1336.393973954 I0319 09:24:44.265835 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:24:44.265823841 +0000 UTC m=+1336.441128955 I0319 09:24:44.290488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:24:44.290818 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:24:44.290810104 +0000 UTC m=+1336.466115218 I0319 09:24:44.297913 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:24:44.325372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"