I0419 13:32:29.721053 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0419 13:32:29.721149 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0419 13:32:29.721217 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0419 13:32:29.725756 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0419 13:32:29.726244 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0419 13:32:29.726319 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0419 13:32:29.726330 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0419 13:32:29.730120 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0419 13:32:29.745237 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0419 13:32:29.748587 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0419 13:32:29.753891 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0419 13:32:29.753955 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0419 13:32:29.756732 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0419 13:32:29.759201 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0419 13:32:29.761652 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0419 13:32:29.764185 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0419 13:32:29.766576 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0419 13:32:29.766602 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0419 13:32:29.766750 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0419 13:32:29.772522 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0419 13:32:29.776225 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0419 13:32:29.779947 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0419 13:32:29.782842 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0419 13:32:29.785469 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0419 13:32:29.787649 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0419 13:32:29.789859 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0419 13:32:29.792545 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0419 13:32:29.797954 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0419 13:32:29.797978 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0419 13:32:29.797985 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0419 13:32:29.798010 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0419 13:32:29.800288 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0419 13:32:29.802169 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0419 13:32:29.803998 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.804597 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.804830 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.822451 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.840462 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.850974 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.866072 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.878269 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.888751 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:29.892172 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0419 13:32:41.939278 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-19 13:32:41.939260505 +0000 UTC m=+12.252016447 I0419 13:32:42.634410 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:32:42.634594 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-19 13:32:42.634585401 +0000 UTC m=+12.947341333 I0419 13:32:42.635594 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-19 13:32:42.634466098 +0000 UTC m=+12.947222030 E0419 13:32:42.647145 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 13:32:42.647247 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-19 13:32:42.64723625 +0000 UTC m=+12.959992182 E0419 13:32:42.647279 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 13:32:42.650041 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:32:42.650121 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:32:42.650143 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-19 13:32:42.650136601 +0000 UTC m=+12.962892513 E0419 13:32:42.658767 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0419 13:32:42.659103 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 13:32:42.659213 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 13:32:42.659284 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0419 13:32:42.698849 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hkp5k" condition "Approved" to 2026-04-19 13:32:42.698838887 +0000 UTC m=+13.011594799 I0419 13:32:42.715059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-hkp5k" condition "Ready" to 2026-04-19 13:32:42.715040952 +0000 UTC m=+13.027796884 I0419 13:32:42.738099 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:32:42.738081503 +0000 UTC m=+13.050837455 I0419 13:32:42.755743 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:32:42.756166 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:32:42.756156423 +0000 UTC m=+13.068912345 I0419 13:32:42.773016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:32:47.659863 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:32:47.659850663 +0000 UTC m=+17.972606605 I0419 13:33:10.496191 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-19 13:33:10.496145672 +0000 UTC m=+40.808901584 I0419 13:33:10.496220 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:33:10.496281 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-19 13:33:10.496270695 +0000 UTC m=+40.809026617 I0419 13:33:10.510070 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-19 13:33:10.510059371 +0000 UTC m=+40.822815283 I0419 13:33:10.526879 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:33:10.527975 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:33:10.528169 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-19 13:33:10.528015938 +0000 UTC m=+40.840771880 I0419 13:33:10.675858 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:33:10.685413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-nhxsr" condition "Approved" to 2026-04-19 13:33:10.685405144 +0000 UTC m=+40.998161056 I0419 13:33:10.719870 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-nhxsr" condition "Ready" to 2026-04-19 13:33:10.719850964 +0000 UTC m=+41.032606906 I0419 13:33:10.747320 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:33:10.747308572 +0000 UTC m=+41.060064484 I0419 13:33:10.773652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:33:10.820210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.645350 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-19 13:34:54.645287202 +0000 UTC m=+144.958043154 I0419 13:34:54.645469 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:34:54.645532 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-19 13:34:54.645517998 +0000 UTC m=+144.958273940 E0419 13:34:54.663330 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0419 13:34:54.663402 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-19 13:34:54.663394745 +0000 UTC m=+144.976150657 I0419 13:34:54.663443 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0419 13:34:54.665967 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.666102 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:34:54.666162 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-19 13:34:54.666152892 +0000 UTC m=+144.978908834 E0419 13:34:54.671982 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0419 13:34:54.672322 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0419 13:34:54.672363 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0419 13:34:54.672420 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0419 13:34:54.673348 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:34:54.673372 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-19 13:34:54.673366029 +0000 UTC m=+144.986121941 I0419 13:34:54.673537 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-19 13:34:54.673525123 +0000 UTC m=+144.986281035 I0419 13:34:54.686323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.686473 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-19 13:34:54.686461679 +0000 UTC m=+144.999217631 I0419 13:34:54.793963 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.804135 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-6l5zm" condition "Approved" to 2026-04-19 13:34:54.804111736 +0000 UTC m=+145.116867678 I0419 13:34:54.813565 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.833246 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-6l5zm" condition "Ready" to 2026-04-19 13:34:54.833230339 +0000 UTC m=+145.145986271 I0419 13:34:54.841803 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-rmcbh" condition "Approved" to 2026-04-19 13:34:54.841794389 +0000 UTC m=+145.154550301 I0419 13:34:54.856911 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-rmcbh" condition "Ready" to 2026-04-19 13:34:54.856895698 +0000 UTC m=+145.169651620 I0419 13:34:54.858821 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:34:54.858810865 +0000 UTC m=+145.171566787 I0419 13:34:54.875478 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.877082 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:34:54.877070861 +0000 UTC m=+145.189826793 I0419 13:34:54.892067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.894058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.894301 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:34:54.894409 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:34:54.894397674 +0000 UTC m=+145.207153616 I0419 13:34:59.674229 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:34:59.674212624 +0000 UTC m=+149.986968556 I0419 13:34:59.690086 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-rmcbh" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:34:59.690068751 +0000 UTC m=+150.002824663 I0419 13:34:59.723586 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:34:59.72357105 +0000 UTC m=+150.036326962 I0419 13:34:59.747189 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:37:32.370093 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-166.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:37:32.370606 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-166.nip.io-tls" condition "Issuing" to 2026-04-19 13:37:32.370202231 +0000 UTC m=+302.682958173 I0419 13:37:32.370607 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-166.nip.io-tls" condition "Ready" to 2026-04-19 13:37:32.369887524 +0000 UTC m=+302.682643466 I0419 13:37:32.390163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-166.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-166.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:37:32.390295 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-166.nip.io-tls" condition "Ready" to 2026-04-19 13:37:32.390284646 +0000 UTC m=+302.703040558 I0419 13:37:32.514698 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-166.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-166.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:37:32.548864 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-166.nip.io-tls-4995c" condition "Approved" to 2026-04-19 13:37:32.548832727 +0000 UTC m=+302.861588639 I0419 13:37:32.570044 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-166.nip.io-tls-4995c" condition "Ready" to 2026-04-19 13:37:32.570015729 +0000 UTC m=+302.882771661 I0419 13:37:32.600312 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-166.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:37:32.600293266 +0000 UTC m=+302.913049208 I0419 13:37:32.622986 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-166.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-166.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:37:32.623388 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-166.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:37:32.623378506 +0000 UTC m=+302.936134418 I0419 13:37:32.642671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-166.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-166.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:38:43.347495 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-19 13:38:43.347470964 +0000 UTC m=+373.660226876 I0419 13:38:43.347568 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:38:43.347649 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-19 13:38:43.347635448 +0000 UTC m=+373.660391390 E0419 13:38:43.360358 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 13:38:43.360431 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-19 13:38:43.360418841 +0000 UTC m=+373.673174763 E0419 13:38:43.360504 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0419 13:38:43.363372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:38:43.363463 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:38:43.363495 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-19 13:38:43.363487066 +0000 UTC m=+373.676243008 E0419 13:38:43.369798 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0419 13:38:43.370358 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 13:38:43.370413 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0419 13:38:43.370491 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0419 13:38:43.400721 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-shpdc" condition "Approved" to 2026-04-19 13:38:43.400691442 +0000 UTC m=+373.713447384 I0419 13:38:43.421306 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-shpdc" condition "Ready" to 2026-04-19 13:38:43.421288957 +0000 UTC m=+373.734044869 I0419 13:38:43.441488 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:38:43.441468213 +0000 UTC m=+373.754224145 I0419 13:38:43.455801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:38:43.525414 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:38:48.370453 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:38:48.370433196 +0000 UTC m=+378.683189128 I0419 13:39:26.095016 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:26.095035 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-19 13:39:26.095016113 +0000 UTC m=+416.407772015 I0419 13:39:26.095083 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-19 13:39:26.095071874 +0000 UTC m=+416.407827786 I0419 13:39:26.095271 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:26.095340 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-19 13:39:26.09532642 +0000 UTC m=+416.408082362 I0419 13:39:26.095443 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-19 13:39:26.095438473 +0000 UTC m=+416.408194385 I0419 13:39:26.096949 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:26.096980 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-19 13:39:26.096974601 +0000 UTC m=+416.409730503 I0419 13:39:26.098416 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-19 13:39:26.098410016 +0000 UTC m=+416.411165928 I0419 13:39:26.123104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.123156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:26.123176 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-19 13:39:26.123168893 +0000 UTC m=+416.435924805 I0419 13:39:26.132943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.133065 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-19 13:39:26.133052356 +0000 UTC m=+416.445808268 I0419 13:39:26.137417 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.137495 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:26.137518 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-19 13:39:26.137514275 +0000 UTC m=+416.450270187 I0419 13:39:26.269028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.276730 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-cth7s" condition "Approved" to 2026-04-19 13:39:26.276712121 +0000 UTC m=+416.589468063 I0419 13:39:26.280291 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.307206 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-cth7s" condition "Ready" to 2026-04-19 13:39:26.307192248 +0000 UTC m=+416.619948150 I0419 13:39:26.315776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4ljsd" condition "Approved" to 2026-04-19 13:39:26.315754939 +0000 UTC m=+416.628510851 I0419 13:39:26.330154 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4ljsd" condition "Ready" to 2026-04-19 13:39:26.330138731 +0000 UTC m=+416.642894643 I0419 13:39:26.334639 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:26.334612492 +0000 UTC m=+416.647368424 I0419 13:39:26.358334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.367149 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:26.367127709 +0000 UTC m=+416.679883631 I0419 13:39:26.397431 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:26.397709 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:26.397700409 +0000 UTC m=+416.710456321 I0419 13:39:26.631467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:27.018632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:27.034954 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-sclbx" condition "Approved" to 2026-04-19 13:39:27.034907023 +0000 UTC m=+417.347662935 I0419 13:39:27.540285 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-sclbx" condition "Ready" to 2026-04-19 13:39:27.540274681 +0000 UTC m=+417.853030583 I0419 13:39:27.601582 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:27.601568995 +0000 UTC m=+417.914324897 I0419 13:39:27.683511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:27.981517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:35.078027 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:35.078080 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" condition "Issuing" to 2026-04-19 13:39:35.078068188 +0000 UTC m=+425.390824130 I0419 13:39:35.078221 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" condition "Ready" to 2026-04-19 13:39:35.078198121 +0000 UTC m=+425.390954053 I0419 13:39:35.098448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:35.098523 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:39:35.098572 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" condition "Issuing" to 2026-04-19 13:39:35.09854045 +0000 UTC m=+425.411296362 I0419 13:39:35.213827 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-5h9gl-9npxr" condition "Approved" to 2026-04-19 13:39:35.213805777 +0000 UTC m=+425.526561689 I0419 13:39:35.237947 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-5h9gl-9npxr" condition "Ready" to 2026-04-19 13:39:35.23793189 +0000 UTC m=+425.550687832 I0419 13:39:35.268653 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:35.268633073 +0000 UTC m=+425.581389015 I0419 13:39:35.288489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:35.288895 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:35.28888641 +0000 UTC m=+425.601642322 I0419 13:39:35.299339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:35.308621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:39:35.308927 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:39:35.308916241 +0000 UTC m=+425.621672153 I0419 13:39:35.309619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-5h9gl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:40:05.948016 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:40:05.948071 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-19 13:40:05.948056513 +0000 UTC m=+456.260812455 I0419 13:40:05.948663 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-19 13:40:05.948632748 +0000 UTC m=+456.261388670 I0419 13:40:05.963855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:40:05.964048 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-19 13:40:05.964038435 +0000 UTC m=+456.276794347 I0419 13:40:06.216157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:40:06.243099 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-5twwr" condition "Approved" to 2026-04-19 13:40:06.243075578 +0000 UTC m=+456.555831470 I0419 13:40:06.262524 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-5twwr" condition "Ready" to 2026-04-19 13:40:06.262511575 +0000 UTC m=+456.575267477 I0419 13:40:07.070884 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:40:07.070863833 +0000 UTC m=+457.383619775 I0419 13:40:07.092004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:40:07.135014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:43:27.611413 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:43:27.611557 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-19 13:43:27.611486224 +0000 UTC m=+657.924242156 I0419 13:43:27.611984 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-19 13:43:27.611438723 +0000 UTC m=+657.924194645 I0419 13:43:27.628043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:43:27.628139 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-19 13:43:27.628129333 +0000 UTC m=+657.940885255 I0419 13:43:27.790413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:43:27.843486 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9xztz" condition "Approved" to 2026-04-19 13:43:27.84346487 +0000 UTC m=+658.156220782 I0419 13:43:27.864334 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9xztz" condition "Ready" to 2026-04-19 13:43:27.864318481 +0000 UTC m=+658.177074393 I0419 13:43:27.900738 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:43:27.900721974 +0000 UTC m=+658.213477886 I0419 13:43:27.924791 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:43:27.981785 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:45:55.995067 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-19 13:45:55.995037903 +0000 UTC m=+806.307793815 I0419 13:45:55.995065 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:45:55.995142 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-19 13:45:55.995134005 +0000 UTC m=+806.307889947 I0419 13:45:56.014361 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:45:56.014432 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-19 13:45:56.014426399 +0000 UTC m=+806.327182311 I0419 13:45:56.288196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:45:56.317929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-klwwg" condition "Approved" to 2026-04-19 13:45:56.317896847 +0000 UTC m=+806.630652759 I0419 13:45:56.335031 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-klwwg" condition "Ready" to 2026-04-19 13:45:56.335020787 +0000 UTC m=+806.647776719 I0419 13:45:56.375024 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:45:56.374997058 +0000 UTC m=+806.687752970 I0419 13:45:56.403803 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:45:56.404309 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:45:56.404297587 +0000 UTC m=+806.717053499 I0419 13:45:56.433084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:45:56.433473 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:45:56.433465123 +0000 UTC m=+806.746221035 I0419 13:47:00.603503 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-19 13:47:00.603460799 +0000 UTC m=+870.916216711 I0419 13:47:00.603545 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:47:00.603601 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-19 13:47:00.603593162 +0000 UTC m=+870.916349084 I0419 13:47:00.619491 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:47:00.619607 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:47:00.619658 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-19 13:47:00.619647576 +0000 UTC m=+870.932403518 I0419 13:47:00.819847 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-bqdbt" condition "Approved" to 2026-04-19 13:47:00.819832749 +0000 UTC m=+871.132588651 I0419 13:47:00.843069 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-bqdbt" condition "Ready" to 2026-04-19 13:47:00.843052678 +0000 UTC m=+871.155808610 I0419 13:47:00.881442 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:47:00.881424211 +0000 UTC m=+871.194180113 I0419 13:47:00.907309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:47:00.908287 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:47:00.90827703 +0000 UTC m=+871.221032942 I0419 13:47:00.924052 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:47:00.924287 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:47:00.924278752 +0000 UTC m=+871.237034674 I0419 13:50:03.454039 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0419 13:50:03.454075 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-19 13:50:03.454023187 +0000 UTC m=+1053.766779119 I0419 13:50:03.454102 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-19 13:50:03.454089969 +0000 UTC m=+1053.766845901 I0419 13:50:03.475922 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:50:03.476114 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-19 13:50:03.476101828 +0000 UTC m=+1053.788857730 I0419 13:50:03.578839 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0419 13:50:03.620106 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ctgcz" condition "Approved" to 2026-04-19 13:50:03.620091468 +0000 UTC m=+1053.932847400 I0419 13:50:03.643229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ctgcz" condition "Ready" to 2026-04-19 13:50:03.643216085 +0000 UTC m=+1053.955971997 I0419 13:50:03.680029 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-19 13:50:03.680007586 +0000 UTC m=+1053.992763498 I0419 13:50:03.706866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"