I0505 09:41:26.274475 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 09:41:26.274611 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 09:41:26.274706 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 09:41:26.278117 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 09:41:26.278591 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 09:41:26.278673 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 09:41:26.278708 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 09:41:26.281217 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 09:41:26.300556 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 09:41:26.308886 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 09:41:26.313127 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 09:41:26.315988 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 09:41:26.318564 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 09:41:26.320985 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 09:41:26.323344 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 09:41:26.325697 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 09:41:26.329418 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 09:41:26.334334 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 09:41:26.334354 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 09:41:26.334364 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 09:41:26.334396 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 09:41:26.336215 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 09:41:26.337914 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 09:41:26.339552 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 09:41:26.341259 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 09:41:26.342819 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 09:41:26.342939 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 09:41:26.344754 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 09:41:26.346453 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 09:41:26.348146 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 09:41:26.348163 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 09:41:26.348346 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 09:41:26.353285 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 09:41:26.355717 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.356074 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.356225 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.356447 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.356760 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.356900 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.357132 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.357407 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.358848 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:26.434520 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 09:41:38.463555 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 09:41:38.463542155 +0000 UTC m=+12.221519841 I0505 09:41:39.219044 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 09:41:39.219034831 +0000 UTC m=+12.977012517 I0505 09:41:39.219127 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:41:39.219203 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 09:41:39.219192732 +0000 UTC m=+12.977170448 E0505 09:41:39.233971 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:41:39.234130 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 09:41:39.234122747 +0000 UTC m=+12.992100433 E0505 09:41:39.234172 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:41:39.235568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:41:39.235618 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:41:39.235695 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 09:41:39.235689234 +0000 UTC m=+12.993666910 E0505 09:41:39.245081 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 09:41:39.245267 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:41:39.245400 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:41:39.245502 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 09:41:39.269733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:41:39.273223 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-p9hfv" condition "Approved" to 2026-05-05 09:41:39.273212068 +0000 UTC m=+13.031189764 I0505 09:41:39.284895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-p9hfv" condition "Ready" to 2026-05-05 09:41:39.284884156 +0000 UTC m=+13.042861832 I0505 09:41:39.305972 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:41:39.305964449 +0000 UTC m=+13.063942135 I0505 09:41:39.321840 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:41:44.246406 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:41:44.246395331 +0000 UTC m=+18.004373017 I0505 09:42:08.096768 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 09:42:08.09673717 +0000 UTC m=+41.854714856 I0505 09:42:08.097280 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:42:08.097303 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 09:42:08.097298528 +0000 UTC m=+41.855276214 I0505 09:42:08.116007 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 09:42:08.115997279 +0000 UTC m=+41.873974955 I0505 09:42:08.124733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:42:08.124789 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:42:08.124856 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 09:42:08.124800641 +0000 UTC m=+41.882778337 I0505 09:42:08.519713 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fcq79" condition "Approved" to 2026-05-05 09:42:08.519703582 +0000 UTC m=+42.277681248 I0505 09:42:08.546234 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fcq79" condition "Ready" to 2026-05-05 09:42:08.54622253 +0000 UTC m=+42.304200226 I0505 09:42:08.576578 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:42:08.576570114 +0000 UTC m=+42.334547780 I0505 09:42:08.606975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:46:11.115305 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-212.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:46:11.115380 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Issuing" to 2026-05-05 09:46:11.115367544 +0000 UTC m=+284.873345260 I0505 09:46:11.115655 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready" to 2026-05-05 09:46:11.115648062 +0000 UTC m=+284.873625748 I0505 09:46:11.138409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:46:11.138496 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-212.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:46:11.138549 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Issuing" to 2026-05-05 09:46:11.138538307 +0000 UTC m=+284.896516043 I0505 09:46:11.280264 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:46:11.288638 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-212.nip.io-tls-5tfzg" condition "Approved" to 2026-05-05 09:46:11.288624463 +0000 UTC m=+285.046602139 I0505 09:46:11.322734 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-212.nip.io-tls-5tfzg" condition "Ready" to 2026-05-05 09:46:11.322714305 +0000 UTC m=+285.080692011 I0505 09:46:11.348301 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-212.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:46:11.348286426 +0000 UTC m=+285.106264112 I0505 09:46:11.365820 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-212.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-212.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:15.055247 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:47:15.055295 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 09:47:15.055283545 +0000 UTC m=+348.813261261 I0505 09:47:15.055320 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 09:47:15.055302956 +0000 UTC m=+348.813280642 E0505 09:47:15.068207 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:47:15.068315 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 09:47:15.068305085 +0000 UTC m=+348.826282771 E0505 09:47:15.068391 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 09:47:15.070622 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:15.070739 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:47:15.070771 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 09:47:15.070763156 +0000 UTC m=+348.828740842 E0505 09:47:15.077186 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 09:47:15.077266 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:47:15.077292 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 09:47:15.077327 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 09:47:15.098705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-j47vd" condition "Approved" to 2026-05-05 09:47:15.09869087 +0000 UTC m=+348.856668556 I0505 09:47:15.110030 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-j47vd" condition "Ready" to 2026-05-05 09:47:15.11001842 +0000 UTC m=+348.867996106 I0505 09:47:15.129854 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:47:15.129671392 +0000 UTC m=+348.887649078 I0505 09:47:15.147038 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:15.147469 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:47:15.1474605 +0000 UTC m=+348.905438186 I0505 09:47:15.158671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:15.162261 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:47:15.162565 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:47:15.162557499 +0000 UTC m=+348.920535185 I0505 09:47:20.078523 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:47:20.078511101 +0000 UTC m=+353.836488817 I0505 09:48:00.360926 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:00.360964 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 09:48:00.360957288 +0000 UTC m=+394.118934974 I0505 09:48:00.361305 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 09:48:00.361300038 +0000 UTC m=+394.119277744 I0505 09:48:00.361507 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 09:48:00.361502954 +0000 UTC m=+394.119480640 I0505 09:48:00.361743 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:00.361764 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 09:48:00.361759572 +0000 UTC m=+394.119737258 I0505 09:48:00.383544 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 09:48:00.383529325 +0000 UTC m=+394.141507031 I0505 09:48:00.386203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:00.386306 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 09:48:00.386275406 +0000 UTC m=+394.144253112 I0505 09:48:00.402925 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:00.403138 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 09:48:00.403131404 +0000 UTC m=+394.161109080 I0505 09:48:00.413293 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:00.413371 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:00.413398 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 09:48:00.413392407 +0000 UTC m=+394.171370093 I0505 09:48:00.428155 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:00.428215 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:00.428235 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 09:48:00.428229126 +0000 UTC m=+394.186206802 I0505 09:48:00.514343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:00.553599 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-q8khr" condition "Approved" to 2026-05-05 09:48:00.5535889 +0000 UTC m=+394.311566576 I0505 09:48:00.634829 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-q8khr" condition "Ready" to 2026-05-05 09:48:00.63481523 +0000 UTC m=+394.392792916 I0505 09:48:00.675110 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gqqwq" condition "Approved" to 2026-05-05 09:48:00.675100039 +0000 UTC m=+394.433077705 I0505 09:48:00.692838 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gqqwq" condition "Ready" to 2026-05-05 09:48:00.692828753 +0000 UTC m=+394.450806429 I0505 09:48:00.714297 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:00.714278497 +0000 UTC m=+394.472256203 I0505 09:48:00.742648 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:00.749472 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:00.749465276 +0000 UTC m=+394.507442952 I0505 09:48:00.771068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:01.096611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:01.248910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:01.316339 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-j8772" condition "Approved" to 2026-05-05 09:48:01.316321427 +0000 UTC m=+395.074299103 I0505 09:48:01.508731 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-j8772" condition "Ready" to 2026-05-05 09:48:01.508716782 +0000 UTC m=+395.266694468 I0505 09:48:02.217193 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:02.217173511 +0000 UTC m=+395.975151217 I0505 09:48:02.277994 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:08.256318 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-777cg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:08.256357 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-777cg-tls" condition "Issuing" to 2026-05-05 09:48:08.256348926 +0000 UTC m=+402.014326602 I0505 09:48:08.256581 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-777cg-tls" condition "Ready" to 2026-05-05 09:48:08.256576042 +0000 UTC m=+402.014553718 I0505 09:48:08.280074 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-777cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-777cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:08.280504 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-777cg-tls" condition "Ready" to 2026-05-05 09:48:08.28046494 +0000 UTC m=+402.038442656 I0505 09:48:08.448067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-777cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-777cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:08.479198 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-777cg-qbm6q" condition "Approved" to 2026-05-05 09:48:08.479173083 +0000 UTC m=+402.237150759 I0505 09:48:08.499791 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-777cg-qbm6q" condition "Ready" to 2026-05-05 09:48:08.499629118 +0000 UTC m=+402.257606834 I0505 09:48:08.533922 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-777cg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:08.533902023 +0000 UTC m=+402.291879729 I0505 09:48:08.557689 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-777cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-777cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:08.558712 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-777cg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:08.558702657 +0000 UTC m=+402.316680333 I0505 09:48:08.579023 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-777cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-777cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:08.579384 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-777cg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:08.579374109 +0000 UTC m=+402.337351795 I0505 09:48:22.377737 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:22.377759 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 09:48:22.377742401 +0000 UTC m=+416.135720077 I0505 09:48:22.377771 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 09:48:22.377763802 +0000 UTC m=+416.135741478 I0505 09:48:22.393749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:22.393864 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:48:22.393884 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 09:48:22.393877451 +0000 UTC m=+416.151855137 I0505 09:48:22.581057 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:22.589844 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-wskqp" condition "Approved" to 2026-05-05 09:48:22.58980717 +0000 UTC m=+416.347784846 I0505 09:48:22.607275 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-wskqp" condition "Ready" to 2026-05-05 09:48:22.607262389 +0000 UTC m=+416.365240085 I0505 09:48:22.646971 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:22.646955957 +0000 UTC m=+416.404933643 I0505 09:48:22.669078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:22.669486 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:22.669477526 +0000 UTC m=+416.427455202 I0505 09:48:22.672108 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:22.684770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:48:22.685309 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:48:22.685298027 +0000 UTC m=+416.443275713 I0505 09:48:22.691750 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:51:28.999386 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:51:28.999416 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 09:51:28.999409501 +0000 UTC m=+602.757387197 I0505 09:51:28.999556 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 09:51:28.999549604 +0000 UTC m=+602.757527300 I0505 09:51:29.017466 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:51:29.017695 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:51:29.017727 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 09:51:29.017720875 +0000 UTC m=+602.775698561 I0505 09:51:29.138950 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-55pfk" condition "Approved" to 2026-05-05 09:51:29.138938009 +0000 UTC m=+602.896915695 I0505 09:51:29.164411 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-55pfk" condition "Ready" to 2026-05-05 09:51:29.164398859 +0000 UTC m=+602.922376575 I0505 09:51:29.195978 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:51:29.195963076 +0000 UTC m=+602.953940762 I0505 09:51:29.215955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:51:29.216347 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:51:29.216339907 +0000 UTC m=+602.974317593 I0505 09:51:29.238805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:52:07.268056 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 09:52:07.26804519 +0000 UTC m=+641.026022866 I0505 09:52:07.268410 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 09:52:07.268454 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 09:52:07.268449197 +0000 UTC m=+641.026426883 I0505 09:52:07.288695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:52:07.288766 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 09:52:07.288757267 +0000 UTC m=+641.046734973 I0505 09:52:07.492256 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 09:52:07.517135 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-7qh48" condition "Approved" to 2026-05-05 09:52:07.517124439 +0000 UTC m=+641.275102125 I0505 09:52:07.537955 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-7qh48" condition "Ready" to 2026-05-05 09:52:07.537945248 +0000 UTC m=+641.295922934 I0505 09:52:07.570769 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 09:52:07.570755778 +0000 UTC m=+641.328733474 I0505 09:52:07.590165 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"