I0507 23:20:11.848196 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0507 23:20:11.849049 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0507 23:20:11.849208 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0507 23:20:11.854992 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0507 23:20:11.855455 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0507 23:20:11.855676 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0507 23:20:11.855830 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0507 23:20:11.858237 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0507 23:20:11.871649 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0507 23:20:11.876777 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0507 23:20:11.882046 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0507 23:20:11.885336 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0507 23:20:11.885394 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0507 23:20:11.885489 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0507 23:20:11.887936 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0507 23:20:11.890483 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0507 23:20:11.892383 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0507 23:20:11.892435 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0507 23:20:11.894311 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0507 23:20:11.896295 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0507 23:20:11.902812 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0507 23:20:11.906649 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0507 23:20:11.906679 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0507 23:20:11.909305 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0507 23:20:11.911786 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0507 23:20:11.914157 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0507 23:20:11.916033 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0507 23:20:11.917646 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0507 23:20:11.917723 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0507 23:20:11.919384 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0507 23:20:11.919497 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0507 23:20:11.921662 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0507 23:20:11.928413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0507 23:20:11.931583 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:11.931749 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:11.932833 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:11.950440 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:11.966650 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:11.982411 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:11.998049 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:12.012488 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:12.016952 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:12.027425 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0507 23:20:25.967657 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-07 23:20:25.967629661 +0000 UTC m=+14.152778658 I0507 23:20:26.661334 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:20:26.661453 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-07 23:20:26.661442527 +0000 UTC m=+14.846591524 I0507 23:20:26.661383 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-07 23:20:26.661370276 +0000 UTC m=+14.846519273 E0507 23:20:26.675820 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0507 23:20:26.675880 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-07 23:20:26.675873793 +0000 UTC m=+14.861022770 E0507 23:20:26.675903 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0507 23:20:26.680338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:26.680400 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:20:26.680418 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-07 23:20:26.680411674 +0000 UTC m=+14.865560641 E0507 23:20:26.695715 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0507 23:20:26.698946 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0507 23:20:26.699035 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0507 23:20:26.699111 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0507 23:20:26.738444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:26.738807 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rpkrn" condition "Approved" to 2026-05-07 23:20:26.738793378 +0000 UTC m=+14.923942375 I0507 23:20:26.752937 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rpkrn" condition "Ready" to 2026-05-07 23:20:26.752922599 +0000 UTC m=+14.938071576 I0507 23:20:26.808122 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:26.808110394 +0000 UTC m=+14.993259361 I0507 23:20:26.827430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:26.827811 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:26.827803992 +0000 UTC m=+15.012952969 I0507 23:20:26.839794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:26.840008 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:26.840000744 +0000 UTC m=+15.025149721 I0507 23:20:26.844851 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:31.697103 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:31.697088575 +0000 UTC m=+19.882237582 I0507 23:20:55.977608 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-07 23:20:55.977596136 +0000 UTC m=+44.162745103 I0507 23:20:55.978112 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:20:55.981198 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-07 23:20:55.981184697 +0000 UTC m=+44.166333694 I0507 23:20:55.994223 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-07 23:20:55.994212265 +0000 UTC m=+44.179361232 I0507 23:20:55.998627 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:55.998735 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:20:55.998805 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-07 23:20:55.998797067 +0000 UTC m=+44.183946044 I0507 23:20:56.387958 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fk94j" condition "Approved" to 2026-05-07 23:20:56.38794407 +0000 UTC m=+44.573093067 I0507 23:20:56.422033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fk94j" condition "Ready" to 2026-05-07 23:20:56.422022527 +0000 UTC m=+44.607171494 I0507 23:20:56.468200 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:56.468183602 +0000 UTC m=+44.653332569 I0507 23:20:56.496810 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:56.497320 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:56.497305837 +0000 UTC m=+44.682454814 I0507 23:20:56.521415 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:20:56.521793 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:20:56.521781943 +0000 UTC m=+44.706930900 I0507 23:25:17.162983 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-209.nip.io-tls" condition "Ready" to 2026-05-07 23:25:17.162947844 +0000 UTC m=+305.348096851 I0507 23:25:17.163092 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-209.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:25:17.163124 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-209.nip.io-tls" condition "Issuing" to 2026-05-07 23:25:17.163116595 +0000 UTC m=+305.348265572 I0507 23:25:17.184390 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:25:17.184472 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-209.nip.io-tls" condition "Ready" to 2026-05-07 23:25:17.184464774 +0000 UTC m=+305.369613741 I0507 23:25:17.462141 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:25:17.597275 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-209.nip.io-tls-js62s" condition "Approved" to 2026-05-07 23:25:17.59725877 +0000 UTC m=+305.782407767 I0507 23:25:17.665759 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-209.nip.io-tls-js62s" condition "Ready" to 2026-05-07 23:25:17.665744543 +0000 UTC m=+305.850893540 I0507 23:25:17.743391 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-209.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:25:17.743378767 +0000 UTC m=+305.928527744 I0507 23:25:17.954520 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:25:17.955042 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-209.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:25:17.955031903 +0000 UTC m=+306.140180900 I0507 23:25:18.524760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-209.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-209.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:26:26.097720 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-07 23:26:26.097705642 +0000 UTC m=+374.282854619 I0507 23:26:26.099100 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:26:26.099121 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-07 23:26:26.099116382 +0000 UTC m=+374.284265359 E0507 23:26:26.112461 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0507 23:26:26.112508 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-07 23:26:26.112499551 +0000 UTC m=+374.297648528 E0507 23:26:26.112558 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0507 23:26:26.118170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:26:26.118359 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-07 23:26:26.118348826 +0000 UTC m=+374.303497823 E0507 23:26:26.120139 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0507 23:26:26.120225 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0507 23:26:26.120254 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0507 23:26:26.120543 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0507 23:26:26.132937 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:26:26.150941 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-bnnql" condition "Approved" to 2026-05-07 23:26:26.150930427 +0000 UTC m=+374.336079404 I0507 23:26:26.162692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-bnnql" condition "Ready" to 2026-05-07 23:26:26.16268083 +0000 UTC m=+374.347829807 I0507 23:26:26.184885 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:26:26.184865917 +0000 UTC m=+374.370014954 I0507 23:26:26.199754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:26:26.200052 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:26:26.200041769 +0000 UTC m=+374.385190766 I0507 23:26:26.221396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:26:26.226654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:26:31.120737 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:26:31.120722549 +0000 UTC m=+379.305871546 I0507 23:27:12.987603 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-07 23:27:12.987560574 +0000 UTC m=+421.172709541 I0507 23:27:12.988152 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:12.988169 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-07 23:27:12.988165702 +0000 UTC m=+421.173314669 I0507 23:27:12.988349 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:12.988397 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-07 23:27:12.988393172 +0000 UTC m=+421.173542149 I0507 23:27:12.988727 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-07 23:27:12.988723098 +0000 UTC m=+421.173872065 I0507 23:27:12.991764 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-07 23:27:12.991758058 +0000 UTC m=+421.176907025 I0507 23:27:12.992093 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:12.992116 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-07 23:27:12.992111075 +0000 UTC m=+421.177260042 I0507 23:27:13.032424 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:13.032461 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:13.032475 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-07 23:27:13.032471111 +0000 UTC m=+421.217620078 I0507 23:27:13.043531 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:13.043584 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-07 23:27:13.043578226 +0000 UTC m=+421.228727183 I0507 23:27:13.043805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:13.043831 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:13.043843 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-07 23:27:13.043840198 +0000 UTC m=+421.228989165 I0507 23:27:13.396053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:13.407553 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-thqdh" condition "Approved" to 2026-05-07 23:27:13.407544916 +0000 UTC m=+421.592693873 I0507 23:27:13.420250 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:13.423764 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-thqdh" condition "Ready" to 2026-05-07 23:27:13.423754237 +0000 UTC m=+421.608903194 I0507 23:27:13.439868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-s4lh5" condition "Approved" to 2026-05-07 23:27:13.439858813 +0000 UTC m=+421.625007770 I0507 23:27:13.462121 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:13.462110354 +0000 UTC m=+421.647259331 I0507 23:27:13.466503 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-s4lh5" condition "Ready" to 2026-05-07 23:27:13.466495496 +0000 UTC m=+421.651644483 I0507 23:27:13.486301 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:13.500716 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:13.500704481 +0000 UTC m=+421.685853438 I0507 23:27:13.527413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" E0507 23:27:13.667369 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-dn4jn\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0507 23:27:13.724877 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:14.079038 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7hn9q" condition "Approved" to 2026-05-07 23:27:14.079027716 +0000 UTC m=+422.264176703 I0507 23:27:14.592996 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7hn9q" condition "Ready" to 2026-05-07 23:27:14.592985004 +0000 UTC m=+422.778133981 I0507 23:27:14.634094 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:14.634079336 +0000 UTC m=+422.819228313 I0507 23:27:14.795582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:14.796419 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:14.796406347 +0000 UTC m=+422.981555354 I0507 23:27:15.011770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:15.364947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:24.855884 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" condition "Ready" to 2026-05-07 23:27:24.855869855 +0000 UTC m=+433.041018832 I0507 23:27:24.856048 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:24.856091 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" condition "Issuing" to 2026-05-07 23:27:24.856081705 +0000 UTC m=+433.041230692 I0507 23:27:24.868068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:24.868124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:24.868140 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" condition "Issuing" to 2026-05-07 23:27:24.868134828 +0000 UTC m=+433.053283805 I0507 23:27:24.991340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-fdfnf-9gxkd" condition "Approved" to 2026-05-07 23:27:24.991293261 +0000 UTC m=+433.176442248 I0507 23:27:25.013895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-fdfnf-9gxkd" condition "Ready" to 2026-05-07 23:27:25.013880696 +0000 UTC m=+433.199029673 I0507 23:27:25.040826 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:25.040810345 +0000 UTC m=+433.225959322 I0507 23:27:25.060775 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:25.061092 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:25.06108669 +0000 UTC m=+433.246235657 I0507 23:27:25.078472 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:25.078720 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-fdfnf-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:25.078715516 +0000 UTC m=+433.263864483 I0507 23:27:48.088274 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:27:48.088310 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-07 23:27:48.088301102 +0000 UTC m=+456.273450079 I0507 23:27:48.088244 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-07 23:27:48.088214218 +0000 UTC m=+456.273363215 I0507 23:27:48.104276 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:48.104368 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-07 23:27:48.104336662 +0000 UTC m=+456.289485639 I0507 23:27:48.226693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:48.379572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-nh7h5" condition "Approved" to 2026-05-07 23:27:48.379553891 +0000 UTC m=+456.564702888 I0507 23:27:48.404588 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-nh7h5" condition "Ready" to 2026-05-07 23:27:48.404573422 +0000 UTC m=+456.589722389 I0507 23:27:48.446884 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:27:48.446868248 +0000 UTC m=+456.632017235 I0507 23:27:48.477361 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:27:48.541674 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:31:00.130054 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:31:00.130165 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-07 23:31:00.130158862 +0000 UTC m=+648.315307829 I0507 23:31:00.130631 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-07 23:31:00.130626683 +0000 UTC m=+648.315775650 I0507 23:31:00.232541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:31:00.232647 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:31:00.232678 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-07 23:31:00.232672125 +0000 UTC m=+648.417821092 I0507 23:31:00.844674 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pqv7w" condition "Approved" to 2026-05-07 23:31:00.844656355 +0000 UTC m=+649.029805362 I0507 23:31:00.865636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-pqv7w" condition "Ready" to 2026-05-07 23:31:00.865625877 +0000 UTC m=+649.050774854 I0507 23:31:00.975098 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:31:00.975084727 +0000 UTC m=+649.160233704 I0507 23:31:01.011206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:31:40.874522 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-07 23:31:40.874490665 +0000 UTC m=+689.059639672 I0507 23:31:40.875206 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:31:40.875265 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-07 23:31:40.875257867 +0000 UTC m=+689.060406874 I0507 23:31:40.896762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:31:40.896942 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0507 23:31:40.896970 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-07 23:31:40.896965164 +0000 UTC m=+689.082114131 I0507 23:31:41.224964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9sb5x" condition "Approved" to 2026-05-07 23:31:41.224953972 +0000 UTC m=+689.410102949 I0507 23:31:41.239681 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-9sb5x" condition "Ready" to 2026-05-07 23:31:41.23967349 +0000 UTC m=+689.424822457 I0507 23:31:41.269902 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-07 23:31:41.26988939 +0000 UTC m=+689.455038367 I0507 23:31:41.299585 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0507 23:31:41.344493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"