I0413 18:29:40.702867 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0413 18:29:40.703045 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0413 18:29:40.703180 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0413 18:29:40.708243 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0413 18:29:40.708929 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0413 18:29:40.709280 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0413 18:29:40.709312 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0413 18:29:40.711867 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0413 18:29:40.728949 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0413 18:29:40.729296 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0413 18:29:40.737350 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0413 18:29:40.738882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0413 18:29:40.745585 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0413 18:29:40.747601 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0413 18:29:40.749544 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0413 18:29:40.751352 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0413 18:29:40.753186 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0413 18:29:40.754995 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0413 18:29:40.755053 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0413 18:29:40.757197 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0413 18:29:40.762997 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0413 18:29:40.767021 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0413 18:29:40.768858 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0413 18:29:40.768884 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0413 18:29:40.768995 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0413 18:29:40.770935 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0413 18:29:40.772558 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0413 18:29:40.772580 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0413 18:29:40.772588 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0413 18:29:40.774767 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0413 18:29:40.776574 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0413 18:29:40.778391 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0413 18:29:40.780962 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0413 18:29:40.784744 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.786382 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.786562 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.787050 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.787053 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.787453 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.787460 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.788130 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.788226 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:29:40.896691 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0413 18:30:23.392604 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-13 18:30:23.392588551 +0000 UTC m=+42.720617959 I0413 18:30:24.193629 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-13 18:30:24.193615828 +0000 UTC m=+43.521645216 I0413 18:30:24.195126 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:24.195170 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 18:30:24.195165756 +0000 UTC m=+43.523195154 E0413 18:30:24.212600 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 18:30:24.212668 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-13 18:30:24.212660839 +0000 UTC m=+43.540690237 E0413 18:30:24.212693 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 18:30:24.217493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:24.217588 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:24.217614 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-13 18:30:24.217604291 +0000 UTC m=+43.545633729 E0413 18:30:24.230709 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0413 18:30:24.231673 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 18:30:24.232205 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 18:30:24.232269 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0413 18:30:24.270751 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b7dzm" condition "Approved" to 2026-04-13 18:30:24.270738056 +0000 UTC m=+43.598767464 I0413 18:30:24.284382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-b7dzm" condition "Ready" to 2026-04-13 18:30:24.284365833 +0000 UTC m=+43.612395231 I0413 18:30:24.317620 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:24.317606725 +0000 UTC m=+43.645636123 I0413 18:30:24.333833 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:24.334455 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:24.334409651 +0000 UTC m=+43.662439059 I0413 18:30:24.362016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:29.231363 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:29.231346885 +0000 UTC m=+48.559376283 I0413 18:30:30.852369 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-13 18:30:30.852354146 +0000 UTC m=+50.180383554 I0413 18:30:30.852459 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:30.852536 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 18:30:30.852523751 +0000 UTC m=+50.180553159 I0413 18:30:30.875847 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-13 18:30:30.875826397 +0000 UTC m=+50.203855805 I0413 18:30:30.879464 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:30.879530 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:30.879564 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-13 18:30:30.879557159 +0000 UTC m=+50.207586567 I0413 18:30:31.236370 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jr9qb" condition "Approved" to 2026-04-13 18:30:31.236356506 +0000 UTC m=+50.564385944 I0413 18:30:31.356068 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jr9qb" condition "Ready" to 2026-04-13 18:30:31.356049087 +0000 UTC m=+50.684078525 I0413 18:30:31.393155 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:31.393141445 +0000 UTC m=+50.721170853 I0413 18:30:31.422581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:31.423033 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:31.423025584 +0000 UTC m=+50.751055002 I0413 18:30:31.428995 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:31.449323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:35.811831 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:35.811875 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-13 18:30:35.811864709 +0000 UTC m=+55.139894107 I0413 18:30:35.812052 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-13 18:30:35.812031283 +0000 UTC m=+55.140060691 E0413 18:30:35.827977 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 18:30:35.828037 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-13 18:30:35.828026498 +0000 UTC m=+55.156055906 I0413 18:30:35.828529 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 18:30:35.835987 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:35.836254 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-13 18:30:35.836245522 +0000 UTC m=+55.164274930 E0413 18:30:35.839173 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0413 18:30:35.839270 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0413 18:30:35.839351 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0413 18:30:35.839775 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0413 18:30:35.841259 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-13 18:30:35.841231985 +0000 UTC m=+55.169261383 I0413 18:30:35.841684 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:35.841707 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-13 18:30:35.841700497 +0000 UTC m=+55.169729905 I0413 18:30:35.857497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:35.857579 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:35.857598 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-13 18:30:35.85759002 +0000 UTC m=+55.185619428 I0413 18:30:36.070322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:36.088138 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-5lp9k" condition "Approved" to 2026-04-13 18:30:36.088113093 +0000 UTC m=+55.416142531 I0413 18:30:36.109098 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-5lp9k" condition "Ready" to 2026-04-13 18:30:36.109071001 +0000 UTC m=+55.437100409 I0413 18:30:36.109615 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-hwp7g" condition "Approved" to 2026-04-13 18:30:36.109597894 +0000 UTC m=+55.437627322 I0413 18:30:36.143634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-hwp7g" condition "Ready" to 2026-04-13 18:30:36.143620616 +0000 UTC m=+55.471650454 I0413 18:30:36.176364 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:36.176350556 +0000 UTC m=+55.504379964 I0413 18:30:36.200134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:36.200567 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:36.200554984 +0000 UTC m=+55.528584392 I0413 18:30:36.221506 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:36.564004 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-13 18:30:36.563978435 +0000 UTC m=+55.892007883 I0413 18:30:36.564016 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:36.564183 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-13 18:30:36.56416903 +0000 UTC m=+55.892198458 I0413 18:30:36.583664 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:36.583748 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:36.583764 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-13 18:30:36.583759074 +0000 UTC m=+55.911788472 I0413 18:30:36.631375 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-z5g48" condition "Approved" to 2026-04-13 18:30:36.631358382 +0000 UTC m=+55.959387800 I0413 18:30:36.655804 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-z5g48" condition "Ready" to 2026-04-13 18:30:36.655788606 +0000 UTC m=+55.983818004 I0413 18:30:36.773173 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:36.7731575 +0000 UTC m=+56.101186898 I0413 18:30:36.871529 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:36.871936 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:36.871925844 +0000 UTC m=+56.199955252 I0413 18:30:37.121030 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:37.172921 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:37.291924 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-13 18:30:37.291907723 +0000 UTC m=+56.619937131 I0413 18:30:37.292082 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:37.292143 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-13 18:30:37.292130869 +0000 UTC m=+56.620160267 I0413 18:30:37.322015 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:37.322146 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:30:37.322179 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-13 18:30:37.322172312 +0000 UTC m=+56.650201720 I0413 18:30:37.646778 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-ddmbn" condition "Approved" to 2026-04-13 18:30:37.646756041 +0000 UTC m=+56.974785479 I0413 18:30:38.020263 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-ddmbn" condition "Ready" to 2026-04-13 18:30:38.020248531 +0000 UTC m=+57.348277959 I0413 18:30:40.020952 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-04-13 18:30:40.020939576 +0000 UTC m=+59.348968984 I0413 18:30:40.840208 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:40.840190104 +0000 UTC m=+60.168219532 I0413 18:30:41.098526 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:41.098504104 +0000 UTC m=+60.426533522 I0413 18:30:41.098893 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-5lp9k" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:41.098876183 +0000 UTC m=+60.426905591 I0413 18:30:41.174230 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:41.174534 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:41.174525084 +0000 UTC m=+60.502554492 I0413 18:30:41.206273 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-04-13 18:30:41.206256868 +0000 UTC m=+60.534286306 I0413 18:30:41.216033 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:41.21601331 +0000 UTC m=+60.544042728 I0413 18:30:41.217568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:41.221556 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:41.238686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:30:41.240225 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:30:41.240196868 +0000 UTC m=+60.568226306 I0413 18:30:41.277168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:35:26.618470 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready" to 2026-04-13 18:35:26.618458346 +0000 UTC m=+345.946487744 I0413 18:35:26.618523 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:35:26.618636 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Issuing" to 2026-04-13 18:35:26.61862912 +0000 UTC m=+345.946658528 I0413 18:35:26.640819 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:35:26.640918 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:35:26.640945 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Issuing" to 2026-04-13 18:35:26.640934854 +0000 UTC m=+345.968964292 I0413 18:35:26.884934 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-89.nip.io-tls-hl72b" condition "Approved" to 2026-04-13 18:35:26.884910249 +0000 UTC m=+346.212939717 I0413 18:35:26.907527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-89.nip.io-tls-hl72b" condition "Ready" to 2026-04-13 18:35:26.907509179 +0000 UTC m=+346.235538607 I0413 18:35:26.935951 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:35:26.935939603 +0000 UTC m=+346.263969011 I0413 18:35:26.958127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:35:27.011969 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:36:38.549246 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-13 18:36:38.549228718 +0000 UTC m=+417.877258126 I0413 18:36:38.549443 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:36:38.549520 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 18:36:38.549506415 +0000 UTC m=+417.877535843 E0413 18:36:38.563391 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 18:36:38.563477 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-13 18:36:38.563461979 +0000 UTC m=+417.891491417 E0413 18:36:38.563575 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0413 18:36:38.564634 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:36:38.564790 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:36:38.564831 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-13 18:36:38.56482115 +0000 UTC m=+417.892850568 E0413 18:36:38.575903 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0413 18:36:38.576015 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 18:36:38.576044 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0413 18:36:38.576074 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0413 18:36:38.606577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:36:38.611574 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9wqt5" condition "Approved" to 2026-04-13 18:36:38.611558555 +0000 UTC m=+417.939587973 I0413 18:36:38.625170 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-9wqt5" condition "Ready" to 2026-04-13 18:36:38.62515374 +0000 UTC m=+417.953183148 I0413 18:36:38.652177 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:36:38.652154537 +0000 UTC m=+417.980183955 I0413 18:36:38.670255 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:36:43.576517 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:36:43.576499251 +0000 UTC m=+422.904528659 I0413 18:37:26.878554 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 18:37:26.878534169 +0000 UTC m=+466.206563607 I0413 18:37:26.878697 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:26.878746 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-13 18:37:26.878737944 +0000 UTC m=+466.206767332 I0413 18:37:26.880606 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 18:37:26.880584647 +0000 UTC m=+466.208614045 I0413 18:37:26.889785 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:26.889843 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-13 18:37:26.889834841 +0000 UTC m=+466.217864239 I0413 18:37:27.127420 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:27.127511 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 18:37:27.127502696 +0000 UTC m=+466.455532094 I0413 18:37:27.143472 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:27.146452 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 18:37:27.146437576 +0000 UTC m=+466.474466994 I0413 18:37:27.183070 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:27.183113 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 18:37:27.183105907 +0000 UTC m=+466.511135305 I0413 18:37:27.184462 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-13 18:37:27.184451448 +0000 UTC m=+466.512480846 I0413 18:37:27.208532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:27.208628 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 18:37:27.208617888 +0000 UTC m=+466.536647316 I0413 18:37:28.546424 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-x6cbq" condition "Approved" to 2026-04-13 18:37:28.54640099 +0000 UTC m=+467.874430398 I0413 18:37:28.552915 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-13 18:37:28.552898572 +0000 UTC m=+467.880928000 I0413 18:37:28.553617 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-13 18:37:28.553599548 +0000 UTC m=+467.881628986 I0413 18:37:28.557621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.560583 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.560664 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:28.560690 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-13 18:37:28.560684582 +0000 UTC m=+467.888713980 I0413 18:37:28.693993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.696787 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.697924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-x6cbq" condition "Ready" to 2026-04-13 18:37:28.697907676 +0000 UTC m=+468.025937094 I0413 18:37:28.698018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.749743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4tbcc" condition "Approved" to 2026-04-13 18:37:28.749729509 +0000 UTC m=+468.077758907 I0413 18:37:28.765278 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:28.765265089 +0000 UTC m=+468.093294487 I0413 18:37:28.783626 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4tbcc" condition "Ready" to 2026-04-13 18:37:28.783615035 +0000 UTC m=+468.111644433 I0413 18:37:28.795204 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.795528 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:28.795522351 +0000 UTC m=+468.123551749 I0413 18:37:28.810987 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:28.81097024 +0000 UTC m=+468.138999648 I0413 18:37:28.841761 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.850739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:28.856936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5qxhn" condition "Approved" to 2026-04-13 18:37:28.856921486 +0000 UTC m=+468.184950894 I0413 18:37:28.879050 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-5qxhn" condition "Ready" to 2026-04-13 18:37:28.879032949 +0000 UTC m=+468.207062357 I0413 18:37:29.042344 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:29.042312948 +0000 UTC m=+468.370342346 I0413 18:37:29.154992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:29.155521 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:29.155510535 +0000 UTC m=+468.483539933 I0413 18:37:29.207652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:29.457143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:29.507198 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:36.272200 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-b7276-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:36.272213 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-b7276-tls" condition "Ready" to 2026-04-13 18:37:36.272184102 +0000 UTC m=+475.600213510 I0413 18:37:36.272271 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-b7276-tls" condition "Issuing" to 2026-04-13 18:37:36.272256264 +0000 UTC m=+475.600285682 I0413 18:37:36.291493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-b7276-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-b7276-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:36.291604 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-b7276-tls" condition "Ready" to 2026-04-13 18:37:36.291595984 +0000 UTC m=+475.619625392 I0413 18:37:36.542859 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-b7276-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-b7276-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:36.590151 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-b7276-7wknd" condition "Approved" to 2026-04-13 18:37:36.590133672 +0000 UTC m=+475.918163080 I0413 18:37:36.608697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-b7276-7wknd" condition "Ready" to 2026-04-13 18:37:36.608682513 +0000 UTC m=+475.936711921 I0413 18:37:36.643813 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-b7276-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:36.643798791 +0000 UTC m=+475.971828209 I0413 18:37:36.664297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-b7276-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-b7276-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:36.664810 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-b7276-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:36.66479922 +0000 UTC m=+475.992828628 I0413 18:37:36.686313 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-b7276-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-b7276-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:48.997666 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:48.997700 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 18:37:48.997692149 +0000 UTC m=+488.325721557 I0413 18:37:48.997844 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-13 18:37:48.997824472 +0000 UTC m=+488.325853910 I0413 18:37:49.064726 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:37:49.064806 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:37:49.064822 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-13 18:37:49.064815291 +0000 UTC m=+488.392844699 I0413 18:37:49.607426 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4x7md" condition "Approved" to 2026-04-13 18:37:49.60741281 +0000 UTC m=+488.935442218 I0413 18:37:49.626169 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4x7md" condition "Ready" to 2026-04-13 18:37:49.626158437 +0000 UTC m=+488.954187845 I0413 18:37:49.651239 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:37:49.65122536 +0000 UTC m=+488.979254768 I0413 18:37:49.672776 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:39:09.503494 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-13 18:39:09.503476088 +0000 UTC m=+568.831505536 I0413 18:39:09.503592 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:39:09.503676 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 18:39:09.503661742 +0000 UTC m=+568.831691180 I0413 18:39:09.520372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:39:09.520465 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0413 18:39:09.520490 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-13 18:39:09.520481492 +0000 UTC m=+568.848510910 I0413 18:39:09.698947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:39:09.707133 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-w6dm7" condition "Approved" to 2026-04-13 18:39:09.707106376 +0000 UTC m=+569.035135804 I0413 18:39:09.729842 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-w6dm7" condition "Ready" to 2026-04-13 18:39:09.729823082 +0000 UTC m=+569.057852510 I0413 18:39:09.763757 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:39:09.763747128 +0000 UTC m=+569.091776536 I0413 18:39:09.803479 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0413 18:39:09.803746 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-13 18:39:09.803741024 +0000 UTC m=+569.131770422 I0413 18:39:09.840768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again"