I0331 22:22:26.972250 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 22:22:26.972382 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 22:22:26.972461 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 22:22:26.977025 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 22:22:26.977845 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 22:22:26.978002 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 22:22:26.978050 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 22:22:26.984423 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 22:22:26.998694 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 22:22:26.998920 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 22:22:27.003415 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 22:22:27.006166 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 22:22:27.008900 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 22:22:27.015307 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 22:22:27.019889 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 22:22:27.022488 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 22:22:27.022517 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 22:22:27.022560 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 22:22:27.024741 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 22:22:27.026653 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 22:22:27.028471 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 22:22:27.030199 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 22:22:27.035806 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 22:22:27.039205 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 22:22:27.041985 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 22:22:27.042065 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 22:22:27.044858 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 22:22:27.047312 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 22:22:27.049421 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 22:22:27.051488 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 22:22:27.053742 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 22:22:27.053821 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 22:22:27.053826 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 22:22:27.057290 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.060883 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.061870 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.082782 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.109273 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.127080 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.148394 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.154276 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.172368 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:27.190285 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 22:22:42.139301 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 22:22:42.139263045 +0000 UTC m=+15.198153339 I0331 22:22:42.843107 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:22:42.843178 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 22:22:42.84316951 +0000 UTC m=+15.902059774 I0331 22:22:42.843092 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 22:22:42.843071807 +0000 UTC m=+15.901962101 I0331 22:22:42.856853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:22:42.856955 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:22:42.856986 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 22:22:42.856977368 +0000 UTC m=+15.915867662 E0331 22:22:42.863007 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 22:22:42.863167 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 22:22:42.863152079 +0000 UTC m=+15.922042373 E0331 22:22:42.863218 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 22:22:42.877678 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 22:22:42.877984 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 22:22:42.878036 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 22:22:42.878081 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 22:22:42.907233 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-x8hck" condition "Approved" to 2026-03-31 22:22:42.90722158 +0000 UTC m=+15.966111844 I0331 22:22:42.922493 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-x8hck" condition "Ready" to 2026-03-31 22:22:42.922477435 +0000 UTC m=+15.981367699 I0331 22:22:42.956472 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:22:42.956451898 +0000 UTC m=+16.015342192 I0331 22:22:42.978172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:22:47.879103 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:22:47.879076994 +0000 UTC m=+20.937967278 I0331 22:23:09.530012 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 22:23:09.529992525 +0000 UTC m=+42.588882789 I0331 22:23:09.530203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:23:09.530356 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 22:23:09.530343686 +0000 UTC m=+42.589233960 I0331 22:23:09.542548 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 22:23:09.542537423 +0000 UTC m=+42.601427687 I0331 22:23:09.550551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:23:09.550747 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:23:09.550784 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 22:23:09.55077643 +0000 UTC m=+42.609666694 I0331 22:23:09.840251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:23:09.848864 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tvv67" condition "Approved" to 2026-03-31 22:23:09.848762265 +0000 UTC m=+42.907652559 I0331 22:23:09.882551 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tvv67" condition "Ready" to 2026-03-31 22:23:09.882539153 +0000 UTC m=+42.941429417 I0331 22:23:09.910445 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:23:09.910432858 +0000 UTC m=+42.969323122 I0331 22:23:09.940935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:23:09.941345 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:23:09.941335891 +0000 UTC m=+43.000226155 I0331 22:23:09.960716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:23:09.963692 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:23:09.964130 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:23:09.964120941 +0000 UTC m=+43.023011195 I0331 22:25:01.110951 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 22:25:01.110931333 +0000 UTC m=+154.169821597 I0331 22:25:01.111249 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:25:01.111359 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 22:25:01.111346167 +0000 UTC m=+154.170236461 E0331 22:25:01.126903 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 22:25:01.127006 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 22:25:01.126996778 +0000 UTC m=+154.185887032 I0331 22:25:01.127030 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 22:25:01.129350 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:01.129415 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:25:01.129437 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 22:25:01.129433708 +0000 UTC m=+154.188323962 E0331 22:25:01.136425 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 22:25:01.136518 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 22:25:01.136562 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 22:25:01.136611 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 22:25:01.138156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:25:01.138192 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 22:25:01.138183133 +0000 UTC m=+154.197073387 I0331 22:25:01.138439 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 22:25:01.138426851 +0000 UTC m=+154.197317135 I0331 22:25:01.154117 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:01.154231 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:25:01.154261 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 22:25:01.154250689 +0000 UTC m=+154.213140953 I0331 22:25:01.357472 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zcjvq" condition "Approved" to 2026-03-31 22:25:01.357456088 +0000 UTC m=+154.416346372 I0331 22:25:01.384791 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:01.391399 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zcjvq" condition "Ready" to 2026-03-31 22:25:01.391380596 +0000 UTC m=+154.450270860 I0331 22:25:01.392817 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-48cq4" condition "Approved" to 2026-03-31 22:25:01.392807993 +0000 UTC m=+154.451698257 I0331 22:25:01.415070 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-48cq4" condition "Ready" to 2026-03-31 22:25:01.41505812 +0000 UTC m=+154.473948374 I0331 22:25:01.423426 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:25:01.423409693 +0000 UTC m=+154.482299957 I0331 22:25:01.443890 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:01.444179 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:25:01.444168501 +0000 UTC m=+154.503058765 I0331 22:25:01.461564 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:01.464777 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:06.137994 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:25:06.137974464 +0000 UTC m=+159.196864758 I0331 22:25:06.156436 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-48cq4" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:25:06.156415416 +0000 UTC m=+159.215305690 I0331 22:25:06.184645 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:25:06.184622328 +0000 UTC m=+159.243512612 I0331 22:25:06.204996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:25:06.205350 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:25:06.205340234 +0000 UTC m=+159.264230498 I0331 22:25:06.228668 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:27:49.948297 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-153.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:27:49.948350 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Issuing" to 2026-03-31 22:27:49.94833923 +0000 UTC m=+323.007229524 I0331 22:27:49.949392 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready" to 2026-03-31 22:27:49.949379853 +0000 UTC m=+323.008270137 I0331 22:27:49.971352 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:27:49.971593 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready" to 2026-03-31 22:27:49.971579735 +0000 UTC m=+323.030469999 I0331 22:27:50.152813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:27:50.181681 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-153.nip.io-tls-jzb5c" condition "Approved" to 2026-03-31 22:27:50.181654185 +0000 UTC m=+323.240544479 I0331 22:27:50.205862 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-153.nip.io-tls-jzb5c" condition "Ready" to 2026-03-31 22:27:50.20584673 +0000 UTC m=+323.264736984 I0331 22:27:50.236778 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-153.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:27:50.236760654 +0000 UTC m=+323.295650938 I0331 22:27:50.258649 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:27:50.309569 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-153.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-153.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:02.039406 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 22:29:02.039381317 +0000 UTC m=+395.098271601 I0331 22:29:02.039485 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:02.039591 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 22:29:02.039577323 +0000 UTC m=+395.098467617 E0331 22:29:02.054333 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 22:29:02.054462 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 22:29:02.054451564 +0000 UTC m=+395.113341858 E0331 22:29:02.054499 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 22:29:02.057060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:02.057190 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:02.057222 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 22:29:02.057214421 +0000 UTC m=+395.116104715 E0331 22:29:02.065880 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 22:29:02.066040 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 22:29:02.066092 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 22:29:02.066154 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 22:29:02.094187 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-c7jkg" condition "Approved" to 2026-03-31 22:29:02.094171451 +0000 UTC m=+395.153061705 I0331 22:29:02.105940 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-c7jkg" condition "Ready" to 2026-03-31 22:29:02.105922523 +0000 UTC m=+395.164812817 I0331 22:29:02.129562 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:02.12953809 +0000 UTC m=+395.188428354 I0331 22:29:02.149112 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:07.067248 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:07.067231784 +0000 UTC m=+400.126122078 I0331 22:29:47.711198 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 22:29:47.711183416 +0000 UTC m=+440.770073670 I0331 22:29:47.711475 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:47.711498 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 22:29:47.711495956 +0000 UTC m=+440.770386210 I0331 22:29:47.711620 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 22:29:47.711605269 +0000 UTC m=+440.770495543 I0331 22:29:47.711698 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:47.711808 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 22:29:47.711797375 +0000 UTC m=+440.770687639 I0331 22:29:47.718362 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:47.718421 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 22:29:47.718415565 +0000 UTC m=+440.777305819 I0331 22:29:47.718699 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 22:29:47.718694234 +0000 UTC m=+440.777584488 I0331 22:29:47.810457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:47.810497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:47.810542 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 22:29:47.81053312 +0000 UTC m=+440.869423384 I0331 22:29:47.810620 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 22:29:47.810608863 +0000 UTC m=+440.869499117 I0331 22:29:47.811116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:47.811204 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:47.811223 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 22:29:47.811218962 +0000 UTC m=+440.870109226 I0331 22:29:48.100395 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:48.110127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zrk6w" condition "Approved" to 2026-03-31 22:29:48.110114532 +0000 UTC m=+441.169004786 I0331 22:29:48.132213 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zrk6w" condition "Ready" to 2026-03-31 22:29:48.132199611 +0000 UTC m=+441.191089855 I0331 22:29:48.149722 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xjfl5" condition "Approved" to 2026-03-31 22:29:48.149713565 +0000 UTC m=+441.208603819 I0331 22:29:48.160474 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:48.161710 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:48.161700625 +0000 UTC m=+441.220590879 I0331 22:29:48.164955 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xjfl5" condition "Ready" to 2026-03-31 22:29:48.164946807 +0000 UTC m=+441.223837071 I0331 22:29:48.193786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:48.194077 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:48.194070169 +0000 UTC m=+441.252960423 I0331 22:29:48.199478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xg5sc" condition "Approved" to 2026-03-31 22:29:48.19946687 +0000 UTC m=+441.258357114 I0331 22:29:48.205663 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:48.205652835 +0000 UTC m=+441.264543089 I0331 22:29:48.219042 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xg5sc" condition "Ready" to 2026-03-31 22:29:48.219022699 +0000 UTC m=+441.277912973 I0331 22:29:48.565935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:48.566507 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:48.566496245 +0000 UTC m=+441.625386499 E0331 22:29:48.772783 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-crpks\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0331 22:29:49.003616 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:49.003590119 +0000 UTC m=+442.062480453 I0331 22:29:49.103188 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:49.150824 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:49.287267 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:49.287765 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:49.287749982 +0000 UTC m=+442.346640276 I0331 22:29:49.552297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:49.625856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:56.571453 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:29:56.571504 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" condition "Issuing" to 2026-03-31 22:29:56.571492806 +0000 UTC m=+449.630383070 I0331 22:29:56.571754 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" condition "Ready" to 2026-03-31 22:29:56.571533947 +0000 UTC m=+449.630424211 I0331 22:29:56.591544 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:56.591627 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" condition "Ready" to 2026-03-31 22:29:56.591617213 +0000 UTC m=+449.650507477 I0331 22:29:56.757276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:56.792887 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-k7pr8-vg2k7" condition "Approved" to 2026-03-31 22:29:56.792872842 +0000 UTC m=+449.851763106 I0331 22:29:56.813526 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-k7pr8-vg2k7" condition "Ready" to 2026-03-31 22:29:56.813512716 +0000 UTC m=+449.872402980 I0331 22:29:56.847304 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:56.847289174 +0000 UTC m=+449.906179468 I0331 22:29:56.867529 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:56.868109 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:29:56.868098823 +0000 UTC m=+449.926989097 I0331 22:29:56.879232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:29:56.891970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k7pr8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:30:24.346578 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:30:24.346577 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 22:30:24.346544513 +0000 UTC m=+477.405434807 I0331 22:30:24.346625 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 22:30:24.346614345 +0000 UTC m=+477.405504629 I0331 22:30:24.364317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:30:24.364461 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 22:30:24.364451842 +0000 UTC m=+477.423342096 I0331 22:30:24.545120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:30:24.579870 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-w8xvh" condition "Approved" to 2026-03-31 22:30:24.579849421 +0000 UTC m=+477.638739705 I0331 22:30:24.604279 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-w8xvh" condition "Ready" to 2026-03-31 22:30:24.604268347 +0000 UTC m=+477.663158621 I0331 22:30:24.635124 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:30:24.635110366 +0000 UTC m=+477.694000630 I0331 22:30:24.654516 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:33:51.247888 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:33:51.247959 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 22:33:51.247952095 +0000 UTC m=+684.306842349 I0331 22:33:51.248021 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 22:33:51.247999546 +0000 UTC m=+684.306889830 I0331 22:33:51.263261 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:33:51.263347 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 22:33:51.263339439 +0000 UTC m=+684.322229703 I0331 22:33:51.434770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:33:51.470918 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-j7s6r" condition "Approved" to 2026-03-31 22:33:51.470902333 +0000 UTC m=+684.529792587 I0331 22:33:51.490861 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-j7s6r" condition "Ready" to 2026-03-31 22:33:51.490850541 +0000 UTC m=+684.549740805 I0331 22:33:51.519305 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:33:51.519292227 +0000 UTC m=+684.578182491 I0331 22:33:51.549071 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:33:51.549450 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:33:51.549443896 +0000 UTC m=+684.608334160 I0331 22:33:51.560439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:33:51.576134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:36:12.309307 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:36:12.309353 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 22:36:12.309343662 +0000 UTC m=+825.368233946 I0331 22:36:12.309192 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 22:36:12.309179037 +0000 UTC m=+825.368069281 I0331 22:36:12.328260 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:36:12.328401 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 22:36:12.328381025 +0000 UTC m=+825.387271289 I0331 22:36:12.550479 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:36:12.583009 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-25mmw" condition "Approved" to 2026-03-31 22:36:12.582996517 +0000 UTC m=+825.641886771 I0331 22:36:12.603076 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-25mmw" condition "Ready" to 2026-03-31 22:36:12.603066323 +0000 UTC m=+825.661956577 I0331 22:36:12.637031 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:36:12.637019948 +0000 UTC m=+825.695910212 I0331 22:36:12.657511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:36:12.658426 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:36:12.658409235 +0000 UTC m=+825.717299499 I0331 22:36:12.678758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:37:17.294014 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 22:37:17.29399408 +0000 UTC m=+890.352884344 I0331 22:37:17.294097 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:37:17.294166 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 22:37:17.294156775 +0000 UTC m=+890.353047039 I0331 22:37:17.310846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:37:17.310997 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:37:17.311018 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 22:37:17.31101345 +0000 UTC m=+890.369903714 I0331 22:37:17.576169 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:37:17.580986 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-t9lr2" condition "Approved" to 2026-03-31 22:37:17.580971478 +0000 UTC m=+890.639861742 I0331 22:37:17.596249 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-t9lr2" condition "Ready" to 2026-03-31 22:37:17.596237731 +0000 UTC m=+890.655127975 I0331 22:37:17.620458 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:37:17.620441677 +0000 UTC m=+890.679331941 I0331 22:37:17.641154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:37:17.641540 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:37:17.641532055 +0000 UTC m=+890.700422329 I0331 22:37:17.659774 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:37:17.660147 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:37:17.660138275 +0000 UTC m=+890.719028539 I0331 22:40:23.949950 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:40:23.950058 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 22:40:23.950046774 +0000 UTC m=+1077.008937068 I0331 22:40:23.950048 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 22:40:23.950021654 +0000 UTC m=+1077.008911938 I0331 22:40:23.970693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:40:23.970787 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 22:40:23.970817 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 22:40:23.970805746 +0000 UTC m=+1077.029696040 I0331 22:40:24.227990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-69rjk" condition "Approved" to 2026-03-31 22:40:24.227971876 +0000 UTC m=+1077.286862130 I0331 22:40:24.248261 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-69rjk" condition "Ready" to 2026-03-31 22:40:24.248248402 +0000 UTC m=+1077.307138656 I0331 22:40:24.281414 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:40:24.281394867 +0000 UTC m=+1077.340285131 I0331 22:40:24.300175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:40:24.301981 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:40:24.301973233 +0000 UTC m=+1077.360863497 I0331 22:40:24.316310 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 22:40:24.316864 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 22:40:24.316849717 +0000 UTC m=+1077.375739991 I0331 22:40:24.317635 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"