I0331 18:29:54.704394 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 18:29:54.704563 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 18:29:54.704670 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 18:29:54.710070 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 18:29:54.710624 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 18:29:54.710710 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 18:29:54.710732 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 18:29:54.714715 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 18:29:54.749039 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 18:29:54.749468 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 18:29:54.757847 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 18:29:54.762154 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 18:29:54.765095 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 18:29:54.765124 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 18:29:54.765178 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 18:29:54.767586 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 18:29:54.769702 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 18:29:54.771619 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 18:29:54.777334 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 18:29:54.782024 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 18:29:54.784340 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 18:29:54.786138 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 18:29:54.788500 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 18:29:54.790357 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 18:29:54.791966 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 18:29:54.792169 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 18:29:54.793824 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 18:29:54.800877 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 18:29:54.804015 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 18:29:54.806834 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 18:29:54.808752 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 18:29:54.808791 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 18:29:54.809173 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 18:29:54.811529 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.811849 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.811998 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.812143 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.812197 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.812825 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.813952 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.814058 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.814356 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:29:54.901148 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:30:16.952459 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 18:30:16.952442278 +0000 UTC m=+22.281442827 I0331 18:30:17.665904 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 18:30:17.665890514 +0000 UTC m=+22.994891043 I0331 18:30:17.666064 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:30:17.666192 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 18:30:17.66617359 +0000 UTC m=+22.995174139 I0331 18:30:17.685405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:17.685512 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 18:30:17.6855001 +0000 UTC m=+23.014500659 E0331 18:30:17.709743 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:30:17.709807 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 18:30:17.70979316 +0000 UTC m=+23.038793679 E0331 18:30:17.709832 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:30:17.741150 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 18:30:17.741339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" E0331 18:30:17.741735 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:30:17.741793 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:30:17.741894 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 18:30:17.793069 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-t4stm" condition "Approved" to 2026-03-31 18:30:17.793056189 +0000 UTC m=+23.122056728 I0331 18:30:17.844734 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-t4stm" condition "Ready" to 2026-03-31 18:30:17.844718476 +0000 UTC m=+23.173719035 I0331 18:30:17.938848 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:17.938833716 +0000 UTC m=+23.267834265 I0331 18:30:17.969719 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:17.970378 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:17.970345507 +0000 UTC m=+23.299346066 I0331 18:30:17.977186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:18.002046 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:22.741597 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:22.741585271 +0000 UTC m=+28.070585820 I0331 18:30:52.028801 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:30:52.028859 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 18:30:52.028846785 +0000 UTC m=+57.357847344 I0331 18:30:52.029033 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 18:30:52.029007959 +0000 UTC m=+57.358008538 I0331 18:30:52.045594 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 18:30:52.045581457 +0000 UTC m=+57.374581986 I0331 18:30:52.051882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:52.051951 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:30:52.051968 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 18:30:52.051963748 +0000 UTC m=+57.380964267 I0331 18:30:52.203203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:52.344368 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-4z5vd" condition "Approved" to 2026-03-31 18:30:52.344347502 +0000 UTC m=+57.673348071 I0331 18:30:52.384686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-4z5vd" condition "Ready" to 2026-03-31 18:30:52.384672808 +0000 UTC m=+57.713673357 I0331 18:30:52.423730 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:52.423708045 +0000 UTC m=+57.752708614 I0331 18:30:52.450768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:20.989254 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 18:33:20.989232442 +0000 UTC m=+206.318232991 I0331 18:33:20.989359 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:33:20.989429 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 18:33:20.989418976 +0000 UTC m=+206.318419525 I0331 18:33:21.006473 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.006830 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 18:33:21.006816058 +0000 UTC m=+206.335816627 E0331 18:33:21.007629 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 18:33:21.007801 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 18:33:21.00778701 +0000 UTC m=+206.336787569 I0331 18:33:21.007883 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 18:33:21.020428 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 18:33:21.020540 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 18:33:21.020576 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 18:33:21.020640 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 18:33:21.030273 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:33:21.030321 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 18:33:21.030314419 +0000 UTC m=+206.359314948 I0331 18:33:21.030271 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 18:33:21.030249097 +0000 UTC m=+206.359249626 I0331 18:33:21.047718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.047779 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:33:21.047795 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 18:33:21.047790633 +0000 UTC m=+206.376791152 I0331 18:33:21.147597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.176933 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-k5czh" condition "Approved" to 2026-03-31 18:33:21.17692165 +0000 UTC m=+206.505922189 I0331 18:33:21.205766 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-k5czh" condition "Ready" to 2026-03-31 18:33:21.205752731 +0000 UTC m=+206.534753280 I0331 18:33:21.273636 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:21.273616173 +0000 UTC m=+206.602616722 I0331 18:33:21.301945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.302367 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:21.302359862 +0000 UTC m=+206.631360381 I0331 18:33:21.310332 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.312302 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.317164 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.317647 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:21.317633607 +0000 UTC m=+206.646634166 I0331 18:33:21.779295 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:21.787633 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-flmrk" condition "Approved" to 2026-03-31 18:33:21.787622661 +0000 UTC m=+207.116623200 I0331 18:33:21.803169 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-flmrk" condition "Ready" to 2026-03-31 18:33:21.803152461 +0000 UTC m=+207.132153010 I0331 18:33:26.021796 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:26.021780839 +0000 UTC m=+211.350781398 I0331 18:33:26.602887 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-flmrk" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:26.60285807 +0000 UTC m=+211.931858599 I0331 18:33:26.847020 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:26.847005135 +0000 UTC m=+212.176005654 I0331 18:33:26.873078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:26.873606 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:26.873601215 +0000 UTC m=+212.202601734 I0331 18:33:26.894172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:47.233350 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready" to 2026-03-31 18:39:47.233334567 +0000 UTC m=+592.562335116 I0331 18:39:47.233393 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:39:47.233448 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Issuing" to 2026-03-31 18:39:47.233435729 +0000 UTC m=+592.562436288 I0331 18:39:47.353018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:47.353156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:39:47.353201 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Issuing" to 2026-03-31 18:39:47.353189973 +0000 UTC m=+592.682190522 I0331 18:39:47.925162 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:47.962676 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-169.nip.io-tls-8ddp2" condition "Approved" to 2026-03-31 18:39:47.962660105 +0000 UTC m=+593.291660664 I0331 18:39:47.989382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-169.nip.io-tls-8ddp2" condition "Ready" to 2026-03-31 18:39:47.989365644 +0000 UTC m=+593.318366203 I0331 18:39:48.036709 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:48.036696304 +0000 UTC m=+593.365696833 I0331 18:39:48.062386 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:48.062797 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:48.062790639 +0000 UTC m=+593.391791168 I0331 18:39:48.082178 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:48.082593 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:48.082583101 +0000 UTC m=+593.411583630 I0331 18:39:48.085483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.723956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:08.723971 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 18:41:08.723945908 +0000 UTC m=+674.052946437 I0331 18:41:08.724010 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 18:41:08.723995819 +0000 UTC m=+674.052996358 E0331 18:41:08.740786 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:41:08.740853 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 18:41:08.740843223 +0000 UTC m=+674.069843762 E0331 18:41:08.740914 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:41:08.743722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.743947 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:08.743989 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 18:41:08.743979865 +0000 UTC m=+674.072980394 E0331 18:41:08.752807 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 18:41:08.752955 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:41:08.753016 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:41:08.753060 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 18:41:08.783003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.785643 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zdchh" condition "Approved" to 2026-03-31 18:41:08.785620035 +0000 UTC m=+674.114620584 I0331 18:41:08.798100 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zdchh" condition "Ready" to 2026-03-31 18:41:08.798084249 +0000 UTC m=+674.127084778 I0331 18:41:08.824268 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:08.824250176 +0000 UTC m=+674.153250735 I0331 18:41:08.846748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.847136 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:08.847128618 +0000 UTC m=+674.176129137 I0331 18:41:08.853291 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.864825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.865128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:08.865379 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:08.865369744 +0000 UTC m=+674.194370273 I0331 18:41:13.753395 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:13.753386749 +0000 UTC m=+679.082387258 I0331 18:41:58.845339 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:58.845405 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 18:41:58.845386991 +0000 UTC m=+724.174387550 I0331 18:41:58.846147 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 18:41:58.846134588 +0000 UTC m=+724.175135147 I0331 18:41:58.851071 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:58.851153 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 18:41:58.851142132 +0000 UTC m=+724.180142681 I0331 18:41:58.855425 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 18:41:58.855401019 +0000 UTC m=+724.184401558 I0331 18:41:58.869400 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:58.869627 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 18:41:58.869445319 +0000 UTC m=+724.198445828 I0331 18:41:58.870097 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 18:41:58.870080104 +0000 UTC m=+724.199080633 I0331 18:41:58.890729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:58.890846 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:58.890886 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 18:41:58.890877539 +0000 UTC m=+724.219878068 I0331 18:41:58.891348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:58.894044 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 18:41:58.89402243 +0000 UTC m=+724.223022959 I0331 18:41:58.918480 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:58.920009 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:58.920252 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 18:41:58.920239108 +0000 UTC m=+724.249239667 I0331 18:41:59.239937 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.276078 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-5z7j4" condition "Approved" to 2026-03-31 18:41:59.276055815 +0000 UTC m=+724.605056364 I0331 18:41:59.287972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jkfxm" condition "Approved" to 2026-03-31 18:41:59.287957756 +0000 UTC m=+724.616958285 I0331 18:41:59.298281 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-5z7j4" condition "Ready" to 2026-03-31 18:41:59.298268431 +0000 UTC m=+724.627268960 I0331 18:41:59.313188 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jkfxm" condition "Ready" to 2026-03-31 18:41:59.313174672 +0000 UTC m=+724.642175201 I0331 18:41:59.360897 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:59.36087886 +0000 UTC m=+724.689879419 I0331 18:41:59.379033 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:59.379009164 +0000 UTC m=+724.708009683 I0331 18:41:59.403716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.404140 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:59.404131727 +0000 UTC m=+724.733132256 I0331 18:41:59.411157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.411531 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:59.411522796 +0000 UTC m=+724.740523325 I0331 18:41:59.466916 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.589594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.638545 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.692708 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:59.754241 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8h7s2" condition "Approved" to 2026-03-31 18:41:59.754226883 +0000 UTC m=+725.083227412 I0331 18:41:59.948511 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-8h7s2" condition "Ready" to 2026-03-31 18:41:59.948499924 +0000 UTC m=+725.277500443 I0331 18:42:00.411232 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:00.41121566 +0000 UTC m=+725.740216189 I0331 18:42:00.488685 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:00.489065 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:00.489057205 +0000 UTC m=+725.818057744 I0331 18:42:00.848782 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:18.402643 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:42:18.402691 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" condition "Issuing" to 2026-03-31 18:42:18.40268383 +0000 UTC m=+743.731684359 I0331 18:42:18.402843 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" condition "Ready" to 2026-03-31 18:42:18.402816063 +0000 UTC m=+743.731816602 I0331 18:42:18.425610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:18.425728 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" condition "Ready" to 2026-03-31 18:42:18.425716065 +0000 UTC m=+743.754716614 I0331 18:42:18.763152 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:18.836849 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j7vkz-5pn68" condition "Approved" to 2026-03-31 18:42:18.836828164 +0000 UTC m=+744.165828693 I0331 18:42:18.907631 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j7vkz-5pn68" condition "Ready" to 2026-03-31 18:42:18.907617968 +0000 UTC m=+744.236618497 I0331 18:42:19.006122 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:19.006099484 +0000 UTC m=+744.335100033 I0331 18:42:19.030243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:19.030736 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:19.030726016 +0000 UTC m=+744.359726545 I0331 18:42:19.059276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j7vkz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:43:06.757375 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:43:06.757409 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 18:43:06.757402017 +0000 UTC m=+792.086402546 I0331 18:43:06.757776 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 18:43:06.757770795 +0000 UTC m=+792.086771324 I0331 18:43:06.775333 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:43:06.775383 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:43:06.775395 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 18:43:06.775390145 +0000 UTC m=+792.104390664 I0331 18:43:07.493272 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-9kdv9" condition "Approved" to 2026-03-31 18:43:07.493255537 +0000 UTC m=+792.822256066 I0331 18:43:07.520845 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-9kdv9" condition "Ready" to 2026-03-31 18:43:07.520827723 +0000 UTC m=+792.849828272 I0331 18:43:07.556283 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:43:07.556267088 +0000 UTC m=+792.885267627 I0331 18:43:07.573321 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:43:07.573834 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:43:07.573823877 +0000 UTC m=+792.902824416 I0331 18:43:07.595345 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:43:07.595634 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:43:07.595627873 +0000 UTC m=+792.924628392 I0331 18:43:07.596358 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:48.570247 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 18:46:48.570224754 +0000 UTC m=+1013.899225303 I0331 18:46:48.570189 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:46:48.570480 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 18:46:48.570469039 +0000 UTC m=+1013.899469598 I0331 18:46:48.591246 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:48.591394 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:46:48.591437 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 18:46:48.591426719 +0000 UTC m=+1013.920427248 I0331 18:46:48.883028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:48.888172 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-br8wp" condition "Approved" to 2026-03-31 18:46:48.88816149 +0000 UTC m=+1014.217162009 I0331 18:46:48.911101 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-br8wp" condition "Ready" to 2026-03-31 18:46:48.911071664 +0000 UTC m=+1014.240072213 I0331 18:46:48.936456 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:46:48.936439362 +0000 UTC m=+1014.265439891 I0331 18:46:48.958157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:48.958819 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:46:48.958806552 +0000 UTC m=+1014.287807101 I0331 18:46:48.977106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:46:48.977569 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:46:48.977558692 +0000 UTC m=+1014.306559231 I0331 18:49:17.784494 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:49:17.784514 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 18:49:17.784496807 +0000 UTC m=+1163.113497366 I0331 18:49:17.784541 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 18:49:17.784529638 +0000 UTC m=+1163.113530197 I0331 18:49:17.802220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:49:17.802305 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:49:17.802326 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 18:49:17.802319968 +0000 UTC m=+1163.131320497 I0331 18:49:18.271412 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-8d95v" condition "Approved" to 2026-03-31 18:49:18.271400905 +0000 UTC m=+1163.600401424 I0331 18:49:18.288984 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-8d95v" condition "Ready" to 2026-03-31 18:49:18.288972461 +0000 UTC m=+1163.617972990 I0331 18:49:18.316248 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:49:18.316233485 +0000 UTC m=+1163.645234014 I0331 18:49:18.339424 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:49:18.339896 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:49:18.339888738 +0000 UTC m=+1163.668889277 I0331 18:49:18.345184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:49:18.351499 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:49:18.351936 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:49:18.351927479 +0000 UTC m=+1163.680928028 I0331 18:49:18.353955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:51:14.693650 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:51:14.693677 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 18:51:14.693663689 +0000 UTC m=+1280.022664208 I0331 18:51:14.693687 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 18:51:14.69367902 +0000 UTC m=+1280.022679549 I0331 18:51:14.929266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:51:14.929359 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 18:51:14.929351829 +0000 UTC m=+1280.258352358 I0331 18:51:15.539770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:51:15.877723 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-2vf47" condition "Approved" to 2026-03-31 18:51:15.877703193 +0000 UTC m=+1281.206703772 I0331 18:51:15.969137 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-2vf47" condition "Ready" to 2026-03-31 18:51:15.969125829 +0000 UTC m=+1281.298126358 I0331 18:51:16.045914 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:51:16.045898445 +0000 UTC m=+1281.374899014 I0331 18:51:16.085642 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:51:16.085962 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:51:16.085953207 +0000 UTC m=+1281.414953736 I0331 18:51:16.114984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:54:43.676795 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 18:54:43.676778782 +0000 UTC m=+1489.005779341 I0331 18:54:43.677097 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:54:43.677247 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 18:54:43.677233402 +0000 UTC m=+1489.006233961 I0331 18:54:43.702388 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:54:43.702658 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:54:43.702724 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 18:54:43.702714324 +0000 UTC m=+1489.031714873 I0331 18:54:44.024675 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-n2vfx" condition "Approved" to 2026-03-31 18:54:44.024647369 +0000 UTC m=+1489.353647928 I0331 18:54:44.067901 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-n2vfx" condition "Ready" to 2026-03-31 18:54:44.067889769 +0000 UTC m=+1489.396890288 I0331 18:54:44.102797 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:54:44.102781433 +0000 UTC m=+1489.431781992 I0331 18:54:44.129372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"