I0509 12:58:52.040166 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0509 12:58:52.040317 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0509 12:58:52.040540 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0509 12:58:52.045191 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0509 12:58:52.045687 1 controller.go:156] "cert-manager/controller: starting leader election" I0509 12:58:52.045814 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0509 12:58:52.045907 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0509 12:58:52.048410 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0509 12:58:52.069852 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0509 12:58:52.077823 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0509 12:58:52.080657 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0509 12:58:52.082946 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0509 12:58:52.083043 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0509 12:58:52.084989 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0509 12:58:52.086852 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0509 12:58:52.088462 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0509 12:58:52.094678 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0509 12:58:52.094784 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0509 12:58:52.094836 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0509 12:58:52.094869 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0509 12:58:52.099637 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0509 12:58:52.103598 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0509 12:58:52.105468 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0509 12:58:52.107527 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0509 12:58:52.109452 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0509 12:58:52.111251 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0509 12:58:52.111443 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0509 12:58:52.113254 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0509 12:58:52.116434 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0509 12:58:52.121009 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0509 12:58:52.123714 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0509 12:58:52.126043 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0509 12:58:52.126238 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0509 12:59:11.478957 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-09 12:59:11.478930266 +0000 UTC m=+19.480329119 I0509 12:59:12.259965 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-09 12:59:12.259948021 +0000 UTC m=+20.261346864 I0509 12:59:12.261229 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 12:59:12.261291 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-09 12:59:12.26128324 +0000 UTC m=+20.262682093 I0509 12:59:12.276437 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 12:59:12.276522 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 12:59:12.276554 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-09 12:59:12.276546955 +0000 UTC m=+20.277945798 E0509 12:59:12.289970 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 12:59:12.290032 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-09 12:59:12.290021431 +0000 UTC m=+20.291420264 E0509 12:59:12.290095 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 12:59:12.308409 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0509 12:59:12.308635 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 12:59:12.308692 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 12:59:12.308829 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0509 12:59:12.367072 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-d4kmg" condition "Approved" to 2026-05-09 12:59:12.367048259 +0000 UTC m=+20.368447102 I0509 12:59:12.393676 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-d4kmg" condition "Ready" to 2026-05-09 12:59:12.393655353 +0000 UTC m=+20.395054196 I0509 12:59:12.437281 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 12:59:12.437261019 +0000 UTC m=+20.438659872 I0509 12:59:12.458313 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 12:59:12.502294 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 12:59:17.309392 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 12:59:17.309376356 +0000 UTC m=+25.310775209 I0509 12:59:39.926133 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-09 12:59:39.926111465 +0000 UTC m=+47.927510288 I0509 12:59:39.926460 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 12:59:39.926483 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-09 12:59:39.926478842 +0000 UTC m=+47.927877665 I0509 12:59:39.939121 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-09 12:59:39.93910242 +0000 UTC m=+47.940501233 I0509 12:59:39.951262 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 12:59:39.951361 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 12:59:39.951405 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-09 12:59:39.951397949 +0000 UTC m=+47.952796772 I0509 12:59:40.180064 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 12:59:40.189272 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tg8v6" condition "Approved" to 2026-05-09 12:59:40.189259315 +0000 UTC m=+48.190658128 I0509 12:59:40.223915 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tg8v6" condition "Ready" to 2026-05-09 12:59:40.223890144 +0000 UTC m=+48.225288967 I0509 12:59:40.262098 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 12:59:40.262080021 +0000 UTC m=+48.263478844 I0509 12:59:40.284408 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 12:59:40.285013 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 12:59:40.285003274 +0000 UTC m=+48.286402097 I0509 12:59:40.314330 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:02:14.999826 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-19-213-81.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:02:14.999869 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-81.nip.io-tls" condition "Ready" to 2026-05-09 13:02:14.99981124 +0000 UTC m=+203.001210083 I0509 13:02:14.999897 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-81.nip.io-tls" condition "Issuing" to 2026-05-09 13:02:14.999882201 +0000 UTC m=+203.001281044 I0509 13:02:15.017848 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-81.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-81.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:02:15.017939 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-81.nip.io-tls" condition "Ready" to 2026-05-09 13:02:15.017932381 +0000 UTC m=+203.019331204 I0509 13:02:15.258301 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-81.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-81.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:02:15.291163 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-81.nip.io-tls-2cndb" condition "Approved" to 2026-05-09 13:02:15.291133787 +0000 UTC m=+203.292532640 I0509 13:02:15.323228 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-81.nip.io-tls-2cndb" condition "Ready" to 2026-05-09 13:02:15.323212137 +0000 UTC m=+203.324610950 I0509 13:02:15.350665 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-81.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:02:15.350646925 +0000 UTC m=+203.352045738 I0509 13:02:15.369618 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-81.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-81.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:02:15.426774 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-19-213-81.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-81.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:03:18.844293 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:03:18.844382 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-09 13:03:18.844364869 +0000 UTC m=+266.845763712 I0509 13:03:18.844377 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-09 13:03:18.844204686 +0000 UTC m=+266.845603529 E0509 13:03:18.863134 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 13:03:18.863336 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-09 13:03:18.863322381 +0000 UTC m=+266.864721234 E0509 13:03:18.863423 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 13:03:18.863570 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:03:18.863748 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:03:18.863850 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-09 13:03:18.863808561 +0000 UTC m=+266.865207414 E0509 13:03:18.874007 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0509 13:03:18.874626 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 13:03:18.874725 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 13:03:18.874805 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0509 13:03:18.904591 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8bj9z" condition "Approved" to 2026-05-09 13:03:18.904569587 +0000 UTC m=+266.905968410 I0509 13:03:18.918396 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8bj9z" condition "Ready" to 2026-05-09 13:03:18.918377435 +0000 UTC m=+266.919776288 I0509 13:03:18.939856 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:03:18.939831822 +0000 UTC m=+266.941230665 I0509 13:03:18.956283 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:03:18.956788 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:03:18.956769278 +0000 UTC m=+266.958168131 I0509 13:03:18.976814 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:03:18.981853 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:03:23.874979 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:03:23.874957489 +0000 UTC m=+271.876356332 I0509 13:04:04.283504 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-09 13:04:04.283464008 +0000 UTC m=+312.284862831 I0509 13:04:04.283723 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:04:04.283776 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-09 13:04:04.283765555 +0000 UTC m=+312.285164378 I0509 13:04:04.287991 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-09 13:04:04.287974309 +0000 UTC m=+312.289373132 I0509 13:04:04.288113 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:04:04.288145 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-09 13:04:04.288138763 +0000 UTC m=+312.289537586 I0509 13:04:04.288425 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:04:04.288443 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-09 13:04:04.28843928 +0000 UTC m=+312.289838103 I0509 13:04:04.288639 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-09 13:04:04.288633884 +0000 UTC m=+312.290032707 I0509 13:04:04.320054 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:04.320108 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-09 13:04:04.320100284 +0000 UTC m=+312.321499097 I0509 13:04:04.323305 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:04.323372 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-09 13:04:04.323364346 +0000 UTC m=+312.324763149 I0509 13:04:04.325773 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:04.325819 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:04:04.325848 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-09 13:04:04.325845021 +0000 UTC m=+312.327243824 I0509 13:04:04.486139 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:04.522462 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cqffr" condition "Approved" to 2026-05-09 13:04:04.522436794 +0000 UTC m=+312.523835647 I0509 13:04:04.531788 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:04.552046 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cqffr" condition "Ready" to 2026-05-09 13:04:04.552027633 +0000 UTC m=+312.553426436 I0509 13:04:04.563999 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-x5q5t" condition "Approved" to 2026-05-09 13:04:04.563974319 +0000 UTC m=+312.565373162 I0509 13:04:04.583164 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-8stpt" condition "Approved" to 2026-05-09 13:04:04.583138555 +0000 UTC m=+312.584537378 I0509 13:04:04.584422 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-x5q5t" condition "Ready" to 2026-05-09 13:04:04.584405033 +0000 UTC m=+312.585803846 I0509 13:04:04.599695 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:04.599674573 +0000 UTC m=+312.601073416 I0509 13:04:04.602420 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-8stpt" condition "Ready" to 2026-05-09 13:04:04.602398044 +0000 UTC m=+312.603796897 I0509 13:04:04.927934 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:04.928428 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:04.928420386 +0000 UTC m=+312.929819199 I0509 13:04:05.179935 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:05.179918841 +0000 UTC m=+313.181317664 I0509 13:04:05.360336 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:05.360290953 +0000 UTC m=+313.361689796 I0509 13:04:05.364489 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:05.383663 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:05.430189 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:05.430168568 +0000 UTC m=+313.431567391 I0509 13:04:05.526656 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:05.528446 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:05.527405941 +0000 UTC m=+313.528804764 I0509 13:04:05.578748 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:05.741311 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:05.741790 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:05.741782841 +0000 UTC m=+313.743181654 I0509 13:04:06.079903 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:06.177297 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:06.225926 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:13.282111 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:04:13.282145 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" condition "Issuing" to 2026-05-09 13:04:13.282136913 +0000 UTC m=+321.283535736 I0509 13:04:13.282618 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" condition "Ready" to 2026-05-09 13:04:13.282612254 +0000 UTC m=+321.284011077 I0509 13:04:13.300740 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7dghg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:13.300895 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" condition "Ready" to 2026-05-09 13:04:13.30087551 +0000 UTC m=+321.302274393 I0509 13:04:13.649591 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7dghg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:13.687204 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-7dghg-5fxtv" condition "Approved" to 2026-05-09 13:04:13.687187845 +0000 UTC m=+321.688586648 I0509 13:04:13.711422 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-7dghg-5fxtv" condition "Ready" to 2026-05-09 13:04:13.711394813 +0000 UTC m=+321.712793656 I0509 13:04:13.737507 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:13.737488673 +0000 UTC m=+321.738887486 I0509 13:04:13.758381 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7dghg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:13.759177 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:13.759162916 +0000 UTC m=+321.760561769 I0509 13:04:13.773195 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7dghg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:13.784296 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7dghg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7dghg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:36.705699 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-09 13:04:36.705637734 +0000 UTC m=+344.707036577 I0509 13:04:36.706237 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:04:36.706263 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-09 13:04:36.706256968 +0000 UTC m=+344.707655821 I0509 13:04:36.730275 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:36.730429 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-09 13:04:36.730419126 +0000 UTC m=+344.731817949 I0509 13:04:36.878420 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:36.909358 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-wvcqk" condition "Approved" to 2026-05-09 13:04:36.909339951 +0000 UTC m=+344.910738774 I0509 13:04:36.928094 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-wvcqk" condition "Ready" to 2026-05-09 13:04:36.928076718 +0000 UTC m=+344.929475541 I0509 13:04:36.963076 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:36.963059778 +0000 UTC m=+344.964458601 I0509 13:04:36.988361 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:04:36.989894 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:04:36.989621259 +0000 UTC m=+344.991020102 I0509 13:04:37.010865 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:07:55.756162 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-09 13:07:55.755386531 +0000 UTC m=+543.756785374 I0509 13:07:55.756400 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:07:55.756531 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-09 13:07:55.756515077 +0000 UTC m=+543.757913930 I0509 13:07:55.777201 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:07:55.777300 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:07:55.777335 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-09 13:07:55.77732776 +0000 UTC m=+543.778726603 I0509 13:07:55.996943 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:07:56.007333 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pt5vd" condition "Approved" to 2026-05-09 13:07:56.007308548 +0000 UTC m=+544.008707401 I0509 13:07:56.034529 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pt5vd" condition "Ready" to 2026-05-09 13:07:56.034513084 +0000 UTC m=+544.035911907 I0509 13:07:56.069731 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:07:56.069715929 +0000 UTC m=+544.071114752 I0509 13:07:56.095414 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:07:56.150667 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:10:20.892932 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:10:20.893033 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-09 13:10:20.89299093 +0000 UTC m=+688.894389783 I0509 13:10:20.893127 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-09 13:10:20.893099822 +0000 UTC m=+688.894498685 I0509 13:10:20.910738 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:10:20.910809 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-09 13:10:20.910799897 +0000 UTC m=+688.912198720 I0509 13:10:21.036017 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:10:21.064157 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-qqkbq" condition "Approved" to 2026-05-09 13:10:21.064138634 +0000 UTC m=+689.065537457 I0509 13:10:21.089085 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-qqkbq" condition "Ready" to 2026-05-09 13:10:21.08906635 +0000 UTC m=+689.090465203 I0509 13:10:21.122948 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:10:21.122921934 +0000 UTC m=+689.124320757 I0509 13:10:21.143112 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:10:21.143678 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:10:21.143672036 +0000 UTC m=+689.145070859 I0509 13:10:21.173355 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:11:23.803212 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:11:23.803284 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-09 13:11:23.803276804 +0000 UTC m=+751.804675657 I0509 13:11:23.803231 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-09 13:11:23.803219543 +0000 UTC m=+751.804618366 I0509 13:11:23.819861 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:11:23.819971 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:11:23.820015 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-09 13:11:23.820007427 +0000 UTC m=+751.821406240 I0509 13:11:24.077800 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-777cq" condition "Approved" to 2026-05-09 13:11:24.077777142 +0000 UTC m=+752.079175985 I0509 13:11:24.099973 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-777cq" condition "Ready" to 2026-05-09 13:11:24.099954375 +0000 UTC m=+752.101353228 I0509 13:11:24.141558 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:24.141536372 +0000 UTC m=+752.142935215 I0509 13:11:24.165866 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:11:24.167346 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:24.167334647 +0000 UTC m=+752.168733500 I0509 13:11:24.175891 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:11:24.176407 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:11:24.176398319 +0000 UTC m=+752.177797142 I0509 13:14:20.414683 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-09 13:14:20.414609604 +0000 UTC m=+928.416008457 I0509 13:14:20.414891 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:14:20.414992 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-09 13:14:20.414980282 +0000 UTC m=+928.416379135 I0509 13:14:20.436793 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:14:20.436938 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:14:20.437027 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-09 13:14:20.437015939 +0000 UTC m=+928.438414792 I0509 13:14:20.758493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-v8kv6" condition "Approved" to 2026-05-09 13:14:20.758471675 +0000 UTC m=+928.759870518 I0509 13:14:20.783316 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-v8kv6" condition "Ready" to 2026-05-09 13:14:20.783301775 +0000 UTC m=+928.784700598 I0509 13:14:20.810769 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:14:20.810756453 +0000 UTC m=+928.812155276 I0509 13:14:20.844606 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:14:20.845363 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:14:20.845352338 +0000 UTC m=+928.846751161 I0509 13:14:20.862695 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:14:20.863213 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:14:20.863205423 +0000 UTC m=+928.864604246 I0509 13:20:36.162570 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-09 13:20:36.16253103 +0000 UTC m=+1304.163929853 I0509 13:20:36.163207 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:20:36.163251 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-09 13:20:36.163246695 +0000 UTC m=+1304.164645578 I0509 13:20:36.182908 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:20:36.182996 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:20:36.183017 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-09 13:20:36.183009938 +0000 UTC m=+1304.184408761 I0509 13:20:36.413978 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:20:36.421686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-b8ncx" condition "Approved" to 2026-05-09 13:20:36.421666409 +0000 UTC m=+1304.423065232 I0509 13:20:36.445901 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-b8ncx" condition "Ready" to 2026-05-09 13:20:36.445863978 +0000 UTC m=+1304.447262801 I0509 13:20:36.477434 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:20:36.47741712 +0000 UTC m=+1304.478815943 I0509 13:20:36.505351 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:20:36.506142 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:20:36.506130719 +0000 UTC m=+1304.507529542 I0509 13:20:36.523305 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:20:36.523934 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:20:36.523922349 +0000 UTC m=+1304.525321172 I0509 13:22:01.973390 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:22:01.973419 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-09 13:22:01.973411291 +0000 UTC m=+1389.974810114 I0509 13:22:01.973649 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-09 13:22:01.973631546 +0000 UTC m=+1389.975030369 I0509 13:22:01.993838 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:01.993953 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-09 13:22:01.993942921 +0000 UTC m=+1389.995341744 I0509 13:22:02.173522 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:02.207718 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-jb8b9" condition "Approved" to 2026-05-09 13:22:02.207702746 +0000 UTC m=+1390.209101559 I0509 13:22:02.226962 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-jb8b9" condition "Ready" to 2026-05-09 13:22:02.226943987 +0000 UTC m=+1390.228342830 I0509 13:22:02.280489 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:22:02.28047188 +0000 UTC m=+1390.281870723 I0509 13:22:02.302922 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:02.362101 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:51.787672 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:22:51.787717 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-05-09 13:22:51.787708433 +0000 UTC m=+1439.789107286 I0509 13:22:51.787792 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-05-09 13:22:51.787766675 +0000 UTC m=+1439.789165528 I0509 13:22:51.802635 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:51.802733 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-05-09 13:22:51.802720968 +0000 UTC m=+1439.804119821 I0509 13:22:51.824349 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:51.853481 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-jfnfv" condition "Approved" to 2026-05-09 13:22:51.853467821 +0000 UTC m=+1439.854866644 I0509 13:22:51.875295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-jfnfv" condition "Ready" to 2026-05-09 13:22:51.875283207 +0000 UTC m=+1439.876682020 I0509 13:22:51.900016 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:22:51.899999528 +0000 UTC m=+1439.901398351 I0509 13:22:51.930951 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:51.931454 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:22:51.931443919 +0000 UTC m=+1439.932842732 I0509 13:22:51.950829 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:51.951089 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:22:51.951081077 +0000 UTC m=+1439.952479900 I0509 13:22:51.952219 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:52.422709 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-09 13:22:52.422691828 +0000 UTC m=+1440.424090681 I0509 13:22:52.422793 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:22:52.422827 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-05-09 13:22:52.422817501 +0000 UTC m=+1440.424216314 I0509 13:22:52.446932 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:52.447027 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:22:52.447047 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-05-09 13:22:52.44704106 +0000 UTC m=+1440.448439883 I0509 13:22:52.489100 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:52.496639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-rsmjf" condition "Approved" to 2026-05-09 13:22:52.496625067 +0000 UTC m=+1440.498023890 I0509 13:22:52.511125 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-rsmjf" condition "Ready" to 2026-05-09 13:22:52.511108229 +0000 UTC m=+1440.512507062 I0509 13:22:52.534316 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:22:52.534302457 +0000 UTC m=+1440.535701270 I0509 13:22:52.554486 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:52.611595 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:22:53.079979 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-05-09 13:22:53.079965149 +0000 UTC m=+1441.081363972 I0509 13:22:53.758768 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-05-09 13:22:53.758752511 +0000 UTC m=+1441.760151354 I0509 13:23:41.688200 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:23:41.689083 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-05-09 13:23:41.685541743 +0000 UTC m=+1489.686940566 I0509 13:23:41.691896 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-05-09 13:23:41.688245213 +0000 UTC m=+1489.689644036 I0509 13:23:41.711890 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:23:41.711962 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-05-09 13:23:41.711953111 +0000 UTC m=+1489.713351924 I0509 13:23:42.867298 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:23:42.964654 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-4q54v" condition "Approved" to 2026-05-09 13:23:42.964631505 +0000 UTC m=+1490.966030318 I0509 13:23:43.001244 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-4q54v" condition "Ready" to 2026-05-09 13:23:43.001232082 +0000 UTC m=+1491.002630905 I0509 13:23:43.037845 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:23:43.037826758 +0000 UTC m=+1491.039225581 I0509 13:23:43.062832 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:09.929838 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-05-09 13:26:09.929810309 +0000 UTC m=+1637.931209162 I0509 13:26:09.930101 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:26:09.930187 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-05-09 13:26:09.930176809 +0000 UTC m=+1637.931575632 I0509 13:26:09.948778 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:09.948914 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-05-09 13:26:09.948901316 +0000 UTC m=+1637.950300159 I0509 13:26:10.154893 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:10.188863 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-j4bh8" condition "Approved" to 2026-05-09 13:26:10.188835628 +0000 UTC m=+1638.190234551 I0509 13:26:10.206946 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-j4bh8" condition "Ready" to 2026-05-09 13:26:10.206934681 +0000 UTC m=+1638.208333504 I0509 13:26:10.236618 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:26:10.236603073 +0000 UTC m=+1638.238001896 I0509 13:26:10.265057 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:10.266109 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:26:10.266094751 +0000 UTC m=+1638.267493604 I0509 13:26:10.273693 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:10.292469 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:11.634057 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-05-09 13:26:11.634039686 +0000 UTC m=+1639.635438529 I0509 13:26:11.634489 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:26:11.634572 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-05-09 13:26:11.634558507 +0000 UTC m=+1639.635957350 I0509 13:26:11.657548 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:11.657675 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:26:11.657717 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-05-09 13:26:11.657709983 +0000 UTC m=+1639.659108796 I0509 13:26:11.853088 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:11.869697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-w5rgs" condition "Approved" to 2026-05-09 13:26:11.869675512 +0000 UTC m=+1639.871074335 I0509 13:26:11.887824 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-w5rgs" condition "Ready" to 2026-05-09 13:26:11.887810436 +0000 UTC m=+1639.889209259 I0509 13:26:11.927494 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:26:11.927474931 +0000 UTC m=+1639.928873744 I0509 13:26:11.966123 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:11.970711 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:26:11.970673605 +0000 UTC m=+1639.972072458 I0509 13:26:11.991675 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:11.993820 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:26:11.994400 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:26:11.994389593 +0000 UTC m=+1639.995788416 I0509 13:29:16.808504 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:29:16.808598 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-05-09 13:29:16.808558313 +0000 UTC m=+1824.809957156 I0509 13:29:16.808593 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-05-09 13:29:16.808525422 +0000 UTC m=+1824.809924265 I0509 13:29:16.833999 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:29:16.834206 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:29:16.834244 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-05-09 13:29:16.834234695 +0000 UTC m=+1824.835633518 I0509 13:29:17.097039 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:29:17.102835 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-g5mrp" condition "Approved" to 2026-05-09 13:29:17.102819755 +0000 UTC m=+1825.104218568 I0509 13:29:17.126711 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-g5mrp" condition "Ready" to 2026-05-09 13:29:17.126693986 +0000 UTC m=+1825.128092799 I0509 13:29:17.159323 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:29:17.159305832 +0000 UTC m=+1825.160704655 I0509 13:29:17.182407 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:29:17.243354 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.163230 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-29ftq-api" condition "Ready" to 2026-05-09 13:30:05.163206395 +0000 UTC m=+1873.164605238 I0509 13:30:05.164256 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-29ftq-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:30:05.164341 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-29ftq-api" condition "Issuing" to 2026-05-09 13:30:05.16433143 +0000 UTC m=+1873.165730253 I0509 13:30:05.164862 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-29ftq-vnc" condition "Ready" to 2026-05-09 13:30:05.164846732 +0000 UTC m=+1873.166245605 I0509 13:30:05.165060 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-29ftq-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:30:05.166264 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-29ftq-vnc" condition "Issuing" to 2026-05-09 13:30:05.165098247 +0000 UTC m=+1873.166497070 I0509 13:30:05.181160 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.181236 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-29ftq-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:30:05.181256 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-29ftq-vnc" condition "Issuing" to 2026-05-09 13:30:05.181248947 +0000 UTC m=+1873.182647760 I0509 13:30:05.182720 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-api\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.182799 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/libvirt-libvirt-default-29ftq-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:30:05.182820 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-29ftq-api" condition "Issuing" to 2026-05-09 13:30:05.182816291 +0000 UTC m=+1873.184215114 I0509 13:30:05.460227 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-api\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.463676 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-29ftq-api-rqv59" condition "Approved" to 2026-05-09 13:30:05.463658334 +0000 UTC m=+1873.465057177 I0509 13:30:05.483225 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-29ftq-api-rqv59" condition "Ready" to 2026-05-09 13:30:05.48321733 +0000 UTC m=+1873.484616153 I0509 13:30:05.525260 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-29ftq-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:30:05.525241035 +0000 UTC m=+1873.526639858 I0509 13:30:05.553574 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-api\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.554101 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-29ftq-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:30:05.554089928 +0000 UTC m=+1873.555488741 I0509 13:30:05.556906 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-api\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.572234 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-api\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.572691 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-29ftq-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:30:05.572683052 +0000 UTC m=+1873.574081865 I0509 13:30:05.577955 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-api\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.600610 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:30:05.616284 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-29ftq-vnc-mj9vv" condition "Approved" to 2026-05-09 13:30:05.616257882 +0000 UTC m=+1873.617656695 I0509 13:30:05.632902 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-29ftq-vnc-mj9vv" condition "Ready" to 2026-05-09 13:30:05.632883072 +0000 UTC m=+1873.634281895 I0509 13:30:05.658978 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-29ftq-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:30:05.658956463 +0000 UTC m=+1873.660355286 I0509 13:30:05.676510 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/libvirt-libvirt-default-29ftq-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-29ftq-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:32:11.117555 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:32:11.118162 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-05-09 13:32:11.117585086 +0000 UTC m=+1999.118983909 I0509 13:32:11.118296 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Ready" to 2026-05-09 13:32:11.118237891 +0000 UTC m=+1999.119636734 I0509 13:32:11.134388 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:32:11.134476 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/senlin-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:32:11.134499 1 conditions.go:203] Setting lastTransitionTime for Certificate "senlin-api-certs" condition "Issuing" to 2026-05-09 13:32:11.134493712 +0000 UTC m=+1999.135892525 I0509 13:32:11.507953 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:32:11.514421 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-jj7kd" condition "Approved" to 2026-05-09 13:32:11.514410826 +0000 UTC m=+1999.515809639 I0509 13:32:11.542823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "senlin-api-certs-jj7kd" condition "Ready" to 2026-05-09 13:32:11.542802318 +0000 UTC m=+1999.544201141 I0509 13:32:11.580138 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:32:11.580119508 +0000 UTC m=+1999.581518331 I0509 13:32:11.614093 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:32:11.614453 1 conditions.go:192] Found status change for Certificate "senlin-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:32:11.614447031 +0000 UTC m=+1999.615845844 I0509 13:32:11.636380 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/senlin-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"senlin-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:48.924178 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-05-09 13:35:48.924142978 +0000 UTC m=+2216.925541821 I0509 13:35:48.924270 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:35:48.924349 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-05-09 13:35:48.924336552 +0000 UTC m=+2216.925735395 I0509 13:35:48.940316 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:48.940496 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-05-09 13:35:48.940485992 +0000 UTC m=+2216.941884835 I0509 13:35:49.156438 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:49.184201 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-cthsc" condition "Approved" to 2026-05-09 13:35:49.184176334 +0000 UTC m=+2217.185575157 I0509 13:35:49.210995 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-cthsc" condition "Ready" to 2026-05-09 13:35:49.210970029 +0000 UTC m=+2217.212368872 I0509 13:35:49.246356 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:35:49.246326717 +0000 UTC m=+2217.247725540 I0509 13:35:49.281173 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:50.465687 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:35:50.465736 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-05-09 13:35:50.465709419 +0000 UTC m=+2218.467108242 I0509 13:35:50.465742 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-05-09 13:35:50.465729639 +0000 UTC m=+2218.467128482 I0509 13:35:50.487626 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:50.487736 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:35:50.487766 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-05-09 13:35:50.48775798 +0000 UTC m=+2218.489156803 I0509 13:35:50.652600 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:50.664924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-9x22r" condition "Approved" to 2026-05-09 13:35:50.664901381 +0000 UTC m=+2218.666300224 I0509 13:35:50.689509 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-9x22r" condition "Ready" to 2026-05-09 13:35:50.689488598 +0000 UTC m=+2218.690887451 I0509 13:35:50.722056 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:35:50.722038463 +0000 UTC m=+2218.723437316 I0509 13:35:50.757139 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:35:50.758095 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:35:50.758080765 +0000 UTC m=+2218.759479618 I0509 13:35:50.793212 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:06.248370 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:38:06.248421 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-05-09 13:38:06.24839678 +0000 UTC m=+2354.249795603 I0509 13:38:06.248455 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-05-09 13:38:06.248365679 +0000 UTC m=+2354.249764522 E0509 13:38:06.264994 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0509 13:38:06.265056 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-05-09 13:38:06.2650483 +0000 UTC m=+2354.266447123 I0509 13:38:06.265078 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0509 13:38:06.267610 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:06.267764 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-05-09 13:38:06.267752471 +0000 UTC m=+2354.269151304 E0509 13:38:06.276910 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" E0509 13:38:06.277442 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0509 13:38:06.277514 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-client-ca\" not found" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0509 13:38:06.277590 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" key="openstack/octavia-client" I0509 13:38:06.292612 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:06.320617 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-k97q5" condition "Approved" to 2026-05-09 13:38:06.320599136 +0000 UTC m=+2354.321997959 I0509 13:38:06.339950 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-k97q5" condition "Ready" to 2026-05-09 13:38:06.339935147 +0000 UTC m=+2354.341333960 I0509 13:38:06.371307 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:06.371287724 +0000 UTC m=+2354.372686547 I0509 13:38:06.398151 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:06.937665 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-09 13:38:06.937645816 +0000 UTC m=+2354.939044639 I0509 13:38:06.938135 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:38:06.938159 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-05-09 13:38:06.938155387 +0000 UTC m=+2354.939554210 E0509 13:38:06.952606 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0509 13:38:06.952641 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-05-09 13:38:06.95263269 +0000 UTC m=+2354.954031503 I0509 13:38:06.952686 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0509 13:38:06.955430 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:06.955507 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:38:06.955527 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-05-09 13:38:06.955520804 +0000 UTC m=+2354.956919627 E0509 13:38:06.962857 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" E0509 13:38:06.963336 1 setup.go:48] "cert-manager/issuers/setup: error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0509 13:38:06.963383 1 sync.go:62] "cert-manager/issuers: Error initializing issuer: secret \"octavia-server-ca\" not found" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0509 13:38:06.963420 1 controller.go:167] "cert-manager/issuers: re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" key="openstack/octavia-server" I0509 13:38:06.995945 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:06.997799 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-lkpd4" condition "Approved" to 2026-05-09 13:38:06.997779455 +0000 UTC m=+2354.999178278 I0509 13:38:07.011966 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-lkpd4" condition "Ready" to 2026-05-09 13:38:07.01195354 +0000 UTC m=+2355.013352343 I0509 13:38:07.048943 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:07.048929243 +0000 UTC m=+2355.050328066 I0509 13:38:07.068087 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:07.069105 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:07.069097801 +0000 UTC m=+2355.070496624 I0509 13:38:07.078960 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:07.088359 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:07.681521 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-05-09 13:38:07.681497218 +0000 UTC m=+2355.682896071 I0509 13:38:07.681591 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:38:07.681620 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-05-09 13:38:07.68161328 +0000 UTC m=+2355.683012133 I0509 13:38:07.700594 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:07.700828 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-05-09 13:38:07.700812818 +0000 UTC m=+2355.702211701 I0509 13:38:07.733374 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:07.765803 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-pwc6l" condition "Approved" to 2026-05-09 13:38:07.765787753 +0000 UTC m=+2355.767186576 I0509 13:38:07.786903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-pwc6l" condition "Ready" to 2026-05-09 13:38:07.786887543 +0000 UTC m=+2355.788286366 I0509 13:38:11.278157 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:11.278140017 +0000 UTC m=+2359.279538860 I0509 13:38:11.295490 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-pwc6l" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:11.295468632 +0000 UTC m=+2359.296867485 I0509 13:38:11.323851 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:11.323828903 +0000 UTC m=+2359.325227716 I0509 13:38:11.348715 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:11.407376 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:38:11.966200 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:38:11.966184616 +0000 UTC m=+2359.967583439 I0509 13:40:17.079519 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-05-09 13:40:17.07949024 +0000 UTC m=+2485.080889063 I0509 13:40:17.079556 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:40:17.079588 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-09 13:40:17.079578252 +0000 UTC m=+2485.080977075 I0509 13:40:17.100091 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:40:17.100182 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:40:17.100206 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-09 13:40:17.100199601 +0000 UTC m=+2485.101598424 I0509 13:40:17.236236 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-w848p" condition "Approved" to 2026-05-09 13:40:17.236217078 +0000 UTC m=+2485.237615921 I0509 13:40:17.254621 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-w848p" condition "Ready" to 2026-05-09 13:40:17.254606186 +0000 UTC m=+2485.256005009 I0509 13:40:17.290735 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:40:17.29071482 +0000 UTC m=+2485.292113643 I0509 13:40:17.312305 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:40:17.313260 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:40:17.313248861 +0000 UTC m=+2485.314647704 I0509 13:40:17.321382 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:40:17.339849 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:40:17.339980 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:40:17.340882 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:40:17.340869326 +0000 UTC m=+2485.342268169 I0509 13:41:03.815889 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-09 13:41:03.81586818 +0000 UTC m=+2531.817267033 I0509 13:41:03.837371 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-09 13:41:03.837353428 +0000 UTC m=+2531.838752251 I0509 13:41:03.837561 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:03.837596 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-09 13:41:03.837586073 +0000 UTC m=+2531.838984896 I0509 13:41:03.858438 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:03.858575 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:03.858620 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-09 13:41:03.858611831 +0000 UTC m=+2531.860010654 E0509 13:41:03.874707 1 controller.go:134] "cert-manager/issuers: issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" E0509 13:41:03.880104 1 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"selfsigned-cert.18ade968b938dc06", GenerateName:"", Namespace:"cert-manager-test", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Certificate", Namespace:"cert-manager-test", Name:"selfsigned-cert", UID:"85f41094-1334-413d-a60b-10d5b3c8f415", APIVersion:"cert-manager.io/v1", ResourceVersion:"25358", FieldPath:""}, Reason:"Issuing", Message:"Issuing certificate as Secret does not exist", Source:v1.EventSource{Component:"cert-manager-certificates-trigger", Host:""}, FirstTimestamp:time.Date(2026, time.May, 9, 13, 41, 3, 874595846, time.Local), LastTimestamp:time.Date(2026, time.May, 9, 13, 41, 3, 874595846, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"", ReportingInstance:""}': 'events "selfsigned-cert.18ade968b938dc06" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated' (will not retry!) I0509 13:41:03.938229 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-09 13:41:03.938216562 +0000 UTC m=+2531.939615405 I0509 13:41:03.961064 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:03.961099 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-09 13:41:03.961090921 +0000 UTC m=+2531.962489744 I0509 13:41:03.961201 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-09 13:41:03.961161933 +0000 UTC m=+2531.962560776 I0509 13:41:03.980725 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:03.980782 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-09 13:41:03.980776319 +0000 UTC m=+2531.982175162 I0509 13:41:04.174528 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:04.208911 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-zsws6" condition "Approved" to 2026-05-09 13:41:04.208877944 +0000 UTC m=+2532.210276787 E0509 13:41:04.236718 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" key="cert-manager-test/selfsigned-cert" I0509 13:41:04.239190 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-zsws6" condition "Ready" to 2026-05-09 13:41:04.239171779 +0000 UTC m=+2532.240570602 I0509 13:41:04.283401 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:04.283378892 +0000 UTC m=+2532.284777715 I0509 13:41:04.305516 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:04.852162 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-09 13:41:04.852136878 +0000 UTC m=+2532.853535731 I0509 13:41:04.878479 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-09 13:41:04.878462893 +0000 UTC m=+2532.879861716 I0509 13:41:04.878826 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:04.878845 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-09 13:41:04.878840972 +0000 UTC m=+2532.880239795 I0509 13:41:04.902796 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:04.902924 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-09 13:41:04.902909257 +0000 UTC m=+2532.904308110 I0509 13:41:05.134477 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.187416 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-7ztp2" condition "Approved" to 2026-05-09 13:41:05.187395708 +0000 UTC m=+2533.188794561 I0509 13:41:05.223719 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-7ztp2" condition "Ready" to 2026-05-09 13:41:05.223711046 +0000 UTC m=+2533.225109859 I0509 13:41:05.270729 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:05.270716501 +0000 UTC m=+2533.272115324 I0509 13:41:05.295466 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.295920 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:05.295914972 +0000 UTC m=+2533.297313785 I0509 13:41:05.327690 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.378796 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-09 13:41:05.378773816 +0000 UTC m=+2533.380172629 I0509 13:41:05.407570 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-09 13:41:05.407545746 +0000 UTC m=+2533.408944559 I0509 13:41:05.408293 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:05.408313 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-09 13:41:05.408310484 +0000 UTC m=+2533.409709297 I0509 13:41:05.441850 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.442083 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:05.442339 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-09 13:41:05.442328881 +0000 UTC m=+2533.443727734 I0509 13:41:05.707260 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.714794 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-nhdgh" condition "Approved" to 2026-05-09 13:41:05.714774022 +0000 UTC m=+2533.716172855 I0509 13:41:05.743132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-nhdgh" condition "Ready" to 2026-05-09 13:41:05.743113473 +0000 UTC m=+2533.744512296 I0509 13:41:05.805837 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:05.805816918 +0000 UTC m=+2533.807215731 I0509 13:41:05.851918 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.852586 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:05.852576798 +0000 UTC m=+2533.853975621 I0509 13:41:05.873723 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.874439 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:05.874430575 +0000 UTC m=+2533.875829388 I0509 13:41:05.932391 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-09 13:41:05.932374345 +0000 UTC m=+2533.933773158 I0509 13:41:05.953485 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-09 13:41:05.953470283 +0000 UTC m=+2533.954869096 I0509 13:41:05.953740 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:05.953751 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-09 13:41:05.95374866 +0000 UTC m=+2533.955147473 I0509 13:41:05.972886 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:05.972948 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:41:05.972977 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-09 13:41:05.972969757 +0000 UTC m=+2533.974368650 I0509 13:41:06.385597 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-2pq57" condition "Approved" to 2026-05-09 13:41:06.385580548 +0000 UTC m=+2534.386979361 I0509 13:41:06.417996 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-2pq57" condition "Ready" to 2026-05-09 13:41:06.417977429 +0000 UTC m=+2534.419376252 I0509 13:41:06.839759 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:06.839741904 +0000 UTC m=+2534.841140707 I0509 13:41:06.974968 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:41:06.975542 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:41:06.975531115 +0000 UTC m=+2534.976929938 I0509 13:41:07.180468 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:44:17.074767 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-05-09 13:44:17.074709027 +0000 UTC m=+2725.076107850 I0509 13:44:17.075267 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:44:17.075306 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-09 13:44:17.075296471 +0000 UTC m=+2725.076695294 I0509 13:44:17.091427 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:44:17.091496 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:44:17.091519 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-09 13:44:17.09151218 +0000 UTC m=+2725.092911003 I0509 13:44:17.289048 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-j8ms7" condition "Approved" to 2026-05-09 13:44:17.289032462 +0000 UTC m=+2725.290431285 I0509 13:44:17.311993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-j8ms7" condition "Ready" to 2026-05-09 13:44:17.311979712 +0000 UTC m=+2725.313378535 I0509 13:44:17.353028 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:44:17.353012455 +0000 UTC m=+2725.354411278 I0509 13:44:17.391969 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:44:20.317978 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:44:20.318020 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-05-09 13:44:20.318008726 +0000 UTC m=+2728.319407549 I0509 13:44:20.318909 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-05-09 13:44:20.318903886 +0000 UTC m=+2728.320302709 I0509 13:44:20.334160 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:44:20.334259 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:44:20.334291 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-05-09 13:44:20.334282738 +0000 UTC m=+2728.335681591 I0509 13:44:20.529201 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:44:20.539075 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-jfbvf" condition "Approved" to 2026-05-09 13:44:20.539058521 +0000 UTC m=+2728.540457334 I0509 13:44:20.566577 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-jfbvf" condition "Ready" to 2026-05-09 13:44:20.566560183 +0000 UTC m=+2728.567958996 I0509 13:44:20.600476 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:44:20.600455796 +0000 UTC m=+2728.601854609 I0509 13:44:20.623219 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:49:48.974545 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:49:48.974603 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-09 13:49:48.974574973 +0000 UTC m=+3056.975973796 I0509 13:49:48.974861 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-09 13:49:48.974832689 +0000 UTC m=+3056.976231552 I0509 13:49:48.992857 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:49:48.992968 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-09 13:49:48.992957482 +0000 UTC m=+3056.994356295 I0509 13:49:49.111444 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:49:49.143133 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-ptqsk" condition "Approved" to 2026-05-09 13:49:49.14311714 +0000 UTC m=+3057.144515963 I0509 13:49:49.163538 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-ptqsk" condition "Ready" to 2026-05-09 13:49:49.163524644 +0000 UTC m=+3057.164923497 I0509 13:49:49.204449 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:49:49.204432564 +0000 UTC m=+3057.205831367 I0509 13:49:49.222961 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:49:49.223853 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:49:49.223845565 +0000 UTC m=+3057.225244388 I0509 13:49:49.251976 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:49:49.253730 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:50:24.652598 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-09 13:50:24.652561366 +0000 UTC m=+3092.653960199 I0509 13:50:24.652893 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:50:24.652986 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-09 13:50:24.652971505 +0000 UTC m=+3092.654370358 I0509 13:50:24.674651 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:50:24.674898 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 13:50:24.674999 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-09 13:50:24.674989904 +0000 UTC m=+3092.676388727 I0509 13:50:24.846783 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:50:24.859762 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-f7wwt" condition "Approved" to 2026-05-09 13:50:24.859743332 +0000 UTC m=+3092.861142155 I0509 13:50:24.884071 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-f7wwt" condition "Ready" to 2026-05-09 13:50:24.884049993 +0000 UTC m=+3092.885448826 I0509 13:50:24.919930 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:50:24.919909379 +0000 UTC m=+3092.921308292 I0509 13:50:24.946036 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 13:50:24.946613 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 13:50:24.946600613 +0000 UTC m=+3092.947999436 I0509 13:50:24.972080 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"