I0327 01:54:53.932343 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0327 01:54:53.932580 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0327 01:54:53.932721 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0327 01:54:53.937837 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0327 01:54:53.938534 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0327 01:54:53.938711 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0327 01:54:53.938808 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0327 01:54:53.940739 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0327 01:54:53.959316 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0327 01:54:53.959584 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0327 01:54:53.964370 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0327 01:54:53.969492 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0327 01:54:53.969643 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0327 01:54:53.972567 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0327 01:54:53.975634 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0327 01:54:53.978681 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0327 01:54:53.983141 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0327 01:54:53.987193 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0327 01:54:53.987231 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0327 01:54:53.987358 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0327 01:54:53.991151 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0327 01:54:53.996187 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0327 01:54:53.996297 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0327 01:54:54.000202 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0327 01:54:54.003239 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0327 01:54:54.003307 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0327 01:54:54.005655 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0327 01:54:54.007369 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0327 01:54:54.009103 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0327 01:54:54.010778 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0327 01:54:54.012410 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0327 01:54:54.015901 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0327 01:54:54.020893 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0327 01:54:54.024848 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.024863 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.025210 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.044580 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.062611 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.077461 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.093633 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.112529 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.117604 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:54:54.135783 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0327 01:55:06.283433 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-27 01:55:06.283416562 +0000 UTC m=+12.393119798 I0327 01:55:06.987667 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-27 01:55:06.987654163 +0000 UTC m=+13.097357399 I0327 01:55:06.988524 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 01:55:06.988566 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-27 01:55:06.988559034 +0000 UTC m=+13.098262230 E0327 01:55:07.002122 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0327 01:55:07.002187 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-27 01:55:07.00217955 +0000 UTC m=+13.111882776 E0327 01:55:07.002210 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0327 01:55:07.006229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:55:07.006293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 01:55:07.006308 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-27 01:55:07.006303815 +0000 UTC m=+13.116007021 E0327 01:55:07.018000 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0327 01:55:07.019885 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0327 01:55:07.019974 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0327 01:55:07.020040 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0327 01:55:07.037792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:55:07.042957 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-7hfmj" condition "Approved" to 2026-03-27 01:55:07.042947955 +0000 UTC m=+13.152651181 I0327 01:55:07.053199 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-7hfmj" condition "Ready" to 2026-03-27 01:55:07.053193732 +0000 UTC m=+13.162896938 I0327 01:55:07.074973 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:55:07.074966147 +0000 UTC m=+13.184669353 I0327 01:55:07.090569 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:55:07.134119 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:55:12.018695 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:55:12.018676515 +0000 UTC m=+18.128379741 I0327 01:55:30.044483 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-27 01:55:30.044467714 +0000 UTC m=+36.154170920 I0327 01:55:30.044529 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 01:55:30.044598 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-27 01:55:30.044562026 +0000 UTC m=+36.154265262 I0327 01:55:30.056217 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-27 01:55:30.056202356 +0000 UTC m=+36.165905562 I0327 01:55:30.068148 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:55:30.068243 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 01:55:30.068269 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-27 01:55:30.068262416 +0000 UTC m=+36.177965622 I0327 01:55:30.186896 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-rdp5b" condition "Approved" to 2026-03-27 01:55:30.186882396 +0000 UTC m=+36.296585622 I0327 01:55:30.213703 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-rdp5b" condition "Ready" to 2026-03-27 01:55:30.213691689 +0000 UTC m=+36.323394895 I0327 01:55:30.243280 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:55:30.243261964 +0000 UTC m=+36.352965190 I0327 01:55:30.266784 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:55:30.267699 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:55:30.26768891 +0000 UTC m=+36.377392136 I0327 01:55:30.282636 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:59:47.834372 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 01:59:47.834413 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Issuing" to 2026-03-27 01:59:47.834403642 +0000 UTC m=+293.944106868 I0327 01:59:47.834615 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready" to 2026-03-27 01:59:47.834599837 +0000 UTC m=+293.944303053 I0327 01:59:47.849275 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:59:47.849365 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready" to 2026-03-27 01:59:47.849353768 +0000 UTC m=+293.959057024 I0327 01:59:48.005568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:59:48.037143 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-5q9zv" condition "Approved" to 2026-03-27 01:59:48.037129797 +0000 UTC m=+294.146833003 I0327 01:59:48.064642 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-5q9zv" condition "Ready" to 2026-03-27 01:59:48.064629601 +0000 UTC m=+294.174332807 I0327 01:59:48.094507 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:59:48.094493782 +0000 UTC m=+294.204197018 I0327 01:59:48.115990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:59:48.116277 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:59:48.116271031 +0000 UTC m=+294.225974217 I0327 01:59:48.118141 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:59:48.130420 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 01:59:48.130762 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 01:59:48.130754505 +0000 UTC m=+294.240457731 I0327 02:00:54.146700 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-27 02:00:54.14668241 +0000 UTC m=+360.256385636 I0327 02:00:54.147305 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:00:54.147336 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-27 02:00:54.147330065 +0000 UTC m=+360.257033291 E0327 02:00:54.161569 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0327 02:00:54.161615 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-27 02:00:54.16160717 +0000 UTC m=+360.271310396 E0327 02:00:54.161668 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0327 02:00:54.164358 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:00:54.164465 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:00:54.164489 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-27 02:00:54.164482867 +0000 UTC m=+360.274186093 E0327 02:00:54.172163 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0327 02:00:54.172238 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0327 02:00:54.172272 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0327 02:00:54.172361 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0327 02:00:54.197294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:00:54.207288 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-slqfg" condition "Approved" to 2026-03-27 02:00:54.207264907 +0000 UTC m=+360.316968133 I0327 02:00:54.218952 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-slqfg" condition "Ready" to 2026-03-27 02:00:54.21893914 +0000 UTC m=+360.328642346 I0327 02:00:54.239664 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:00:54.239655254 +0000 UTC m=+360.349358440 I0327 02:00:54.259237 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:00:59.173075 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:00:59.173066582 +0000 UTC m=+365.282769778 I0327 02:01:37.313386 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-27 02:01:37.313366867 +0000 UTC m=+403.423070063 I0327 02:01:37.315773 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:37.315805 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-27 02:01:37.315801974 +0000 UTC m=+403.425505170 I0327 02:01:37.322838 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-27 02:01:37.322823196 +0000 UTC m=+403.432526392 I0327 02:01:37.323167 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:37.323201 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-27 02:01:37.323196615 +0000 UTC m=+403.432899811 I0327 02:01:37.329237 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-27 02:01:37.329224324 +0000 UTC m=+403.438927530 I0327 02:01:37.329571 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:37.329593 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-27 02:01:37.329589412 +0000 UTC m=+403.439292618 I0327 02:01:37.339308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.339371 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:37.339398 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-27 02:01:37.33939183 +0000 UTC m=+403.449095016 I0327 02:01:37.348325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.348537 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:37.348575 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-27 02:01:37.348565712 +0000 UTC m=+403.458268908 I0327 02:01:37.352094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.352185 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-27 02:01:37.352177585 +0000 UTC m=+403.461880781 I0327 02:01:37.505600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.517203 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-hrfnb" condition "Approved" to 2026-03-27 02:01:37.517190811 +0000 UTC m=+403.626894047 I0327 02:01:37.531379 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-hrfnb" condition "Ready" to 2026-03-27 02:01:37.531372439 +0000 UTC m=+403.641075645 I0327 02:01:37.569143 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:37.569124222 +0000 UTC m=+403.678827428 I0327 02:01:37.588996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.589355 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:37.58934838 +0000 UTC m=+403.699051576 I0327 02:01:37.609258 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.615495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.646322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.655717 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rn6n4" condition "Approved" to 2026-03-27 02:01:37.655702815 +0000 UTC m=+403.765406011 I0327 02:01:37.682920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rn6n4" condition "Ready" to 2026-03-27 02:01:37.682905143 +0000 UTC m=+403.792608339 I0327 02:01:37.753608 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:37.753582927 +0000 UTC m=+403.863286153 I0327 02:01:37.901179 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:37.901622 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:37.90160651 +0000 UTC m=+404.011309706 I0327 02:01:37.951432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:38.302620 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:38.353453 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:38.409068 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n26kl" condition "Approved" to 2026-03-27 02:01:38.409047664 +0000 UTC m=+404.518750890 I0327 02:01:38.812770 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-n26kl" condition "Ready" to 2026-03-27 02:01:38.81275608 +0000 UTC m=+404.922459316 I0327 02:01:39.007200 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:39.007182796 +0000 UTC m=+405.116886002 I0327 02:01:39.100789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:46.207352 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:46.207388 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" condition "Issuing" to 2026-03-27 02:01:46.207380197 +0000 UTC m=+412.317083423 I0327 02:01:46.207348 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" condition "Ready" to 2026-03-27 02:01:46.207330026 +0000 UTC m=+412.317033262 I0327 02:01:46.226181 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:46.226280 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:01:46.226310 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" condition "Issuing" to 2026-03-27 02:01:46.226300535 +0000 UTC m=+412.336003771 I0327 02:01:46.355189 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:46.362349 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mv5p6-454k9" condition "Approved" to 2026-03-27 02:01:46.362330331 +0000 UTC m=+412.472033567 I0327 02:01:46.380340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mv5p6-454k9" condition "Ready" to 2026-03-27 02:01:46.380322047 +0000 UTC m=+412.490025253 I0327 02:01:46.413571 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:46.413548255 +0000 UTC m=+412.523251471 I0327 02:01:46.435304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:46.435750 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:01:46.435739248 +0000 UTC m=+412.545442484 I0327 02:01:46.455249 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:01:46.457525 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mv5p6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:02:14.979311 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:02:14.979352 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-27 02:02:14.979342089 +0000 UTC m=+441.089045305 I0327 02:02:14.979377 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-27 02:02:14.979308998 +0000 UTC m=+441.089012224 I0327 02:02:14.995202 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:02:14.995290 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-27 02:02:14.995281833 +0000 UTC m=+441.104985059 I0327 02:02:15.344694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:02:15.373489 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-rxcbc" condition "Approved" to 2026-03-27 02:02:15.373476206 +0000 UTC m=+441.483179412 I0327 02:02:15.397362 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-rxcbc" condition "Ready" to 2026-03-27 02:02:15.39734716 +0000 UTC m=+441.507050356 I0327 02:02:15.428185 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:02:15.428163181 +0000 UTC m=+441.537866407 I0327 02:02:15.450651 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:02:15.451019 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:02:15.45101103 +0000 UTC m=+441.560714236 I0327 02:02:15.472889 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:02:15.473295 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:02:15.473284736 +0000 UTC m=+441.582987972 I0327 02:05:35.604087 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:05:35.604139 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-27 02:05:35.604128349 +0000 UTC m=+641.713831575 I0327 02:05:35.604078 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-27 02:05:35.604061948 +0000 UTC m=+641.713765144 I0327 02:05:35.622947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:05:35.623053 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:05:35.623087 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-27 02:05:35.623078151 +0000 UTC m=+641.732781377 I0327 02:05:35.814463 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wz685" condition "Approved" to 2026-03-27 02:05:35.814443407 +0000 UTC m=+641.924146643 I0327 02:05:35.834152 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wz685" condition "Ready" to 2026-03-27 02:05:35.834135276 +0000 UTC m=+641.943838492 I0327 02:05:35.861790 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:05:35.861776019 +0000 UTC m=+641.971479225 I0327 02:05:35.884587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:07:56.567008 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-27 02:07:56.566994274 +0000 UTC m=+782.676697500 I0327 02:07:56.567469 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:07:56.567516 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-27 02:07:56.567494326 +0000 UTC m=+782.677197562 I0327 02:07:56.583159 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:07:56.583216 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:07:56.583235 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-27 02:07:56.583228482 +0000 UTC m=+782.692931688 I0327 02:07:56.807348 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-tqh45" condition "Approved" to 2026-03-27 02:07:56.807334358 +0000 UTC m=+782.917037554 I0327 02:07:56.822007 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-tqh45" condition "Ready" to 2026-03-27 02:07:56.821998739 +0000 UTC m=+782.931701925 I0327 02:07:56.850781 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:07:56.850771856 +0000 UTC m=+782.960475072 I0327 02:07:56.868082 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:07:56.868343 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:07:56.868338826 +0000 UTC m=+782.978042032 I0327 02:07:56.900288 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:08:54.225538 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:08:54.225579 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-27 02:08:54.225570206 +0000 UTC m=+840.335273412 I0327 02:08:54.226169 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-27 02:08:54.22615684 +0000 UTC m=+840.335860076 I0327 02:08:54.250364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:08:54.250416 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-27 02:08:54.250411857 +0000 UTC m=+840.360115053 I0327 02:08:54.487920 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:08:54.527499 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pn9rd" condition "Approved" to 2026-03-27 02:08:54.527481017 +0000 UTC m=+840.637184223 I0327 02:08:54.555886 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pn9rd" condition "Ready" to 2026-03-27 02:08:54.55587197 +0000 UTC m=+840.665575176 I0327 02:08:54.587634 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:08:54.587619121 +0000 UTC m=+840.697322347 I0327 02:08:54.609741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:08:54.610177 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:08:54.610165038 +0000 UTC m=+840.719868244 I0327 02:08:54.630967 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:08:54.631454 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:08:54.631440985 +0000 UTC m=+840.741144211 I0327 02:11:50.893471 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-27 02:11:50.893453703 +0000 UTC m=+1017.003156929 I0327 02:11:50.893675 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0327 02:11:50.893738 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-27 02:11:50.893731659 +0000 UTC m=+1017.003434885 I0327 02:11:50.912467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:11:50.912635 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-27 02:11:50.912621267 +0000 UTC m=+1017.022324513 I0327 02:11:51.215994 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:11:51.252230 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-n2g2d" condition "Approved" to 2026-03-27 02:11:51.252213111 +0000 UTC m=+1017.361916327 I0327 02:11:51.270776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-n2g2d" condition "Ready" to 2026-03-27 02:11:51.270764311 +0000 UTC m=+1017.380467517 I0327 02:11:51.305263 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:11:51.305246261 +0000 UTC m=+1017.414949457 I0327 02:11:51.330918 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:11:51.331293 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:11:51.33128357 +0000 UTC m=+1017.440986766 I0327 02:11:51.337402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:11:51.360853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0327 02:11:51.361151 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-27 02:11:51.361137989 +0000 UTC m=+1017.470841185