I0420 04:45:53.973331 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0420 04:45:53.973461 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0420 04:45:53.973566 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0420 04:45:53.978263 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0420 04:45:53.978701 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0420 04:45:53.978798 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0420 04:45:53.978842 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0420 04:45:53.984347 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0420 04:45:53.995514 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0420 04:45:53.999349 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0420 04:45:54.002170 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0420 04:45:54.002196 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0420 04:45:54.002205 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0420 04:45:54.002311 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0420 04:45:54.005627 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0420 04:45:54.008550 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0420 04:45:54.016685 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0420 04:45:54.021072 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0420 04:45:54.026121 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0420 04:45:54.029360 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0420 04:45:54.033270 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0420 04:45:54.034225 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0420 04:45:54.034342 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0420 04:45:54.040143 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0420 04:45:54.041359 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0420 04:45:54.045228 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0420 04:45:54.049188 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0420 04:45:54.052116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0420 04:45:54.054469 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0420 04:45:54.054531 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0420 04:45:54.057276 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0420 04:45:54.057488 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0420 04:45:54.059858 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0420 04:45:54.063073 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.063670 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.063675 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.081133 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.094810 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.109830 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.123726 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.140242 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.151785 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:45:54.158373 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 04:46:11.263665 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-20 04:46:11.263637719 +0000 UTC m=+17.323063207 I0420 04:46:11.984235 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 04:46:11.984210539 +0000 UTC m=+18.043636027 I0420 04:46:11.984287 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:46:11.984361 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 04:46:11.984350173 +0000 UTC m=+18.043775661 E0420 04:46:12.001623 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 04:46:12.002007 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-20 04:46:12.001990121 +0000 UTC m=+18.061415629 E0420 04:46:12.002137 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 04:46:12.007715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:12.008981 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 04:46:12.0089741 +0000 UTC m=+18.068399558 E0420 04:46:12.017843 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0420 04:46:12.017908 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 04:46:12.017930 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 04:46:12.017956 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0420 04:46:12.023732 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-c82n5" condition "Approved" to 2026-04-20 04:46:12.023715829 +0000 UTC m=+18.083141277 I0420 04:46:12.025824 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:12.025883 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 04:46:12.025875665 +0000 UTC m=+18.085301113 I0420 04:46:12.035270 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-c82n5" condition "Ready" to 2026-04-20 04:46:12.035244315 +0000 UTC m=+18.094669773 I0420 04:46:12.056520 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:46:12.056508151 +0000 UTC m=+18.115933609 I0420 04:46:12.071508 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:12.071685 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:46:12.071678321 +0000 UTC m=+18.131103779 I0420 04:46:12.096125 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:17.018482 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:46:17.018469804 +0000 UTC m=+23.077895252 I0420 04:46:38.773663 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:46:38.773696 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 04:46:38.773688915 +0000 UTC m=+44.833114373 I0420 04:46:38.773771 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 04:46:38.773761186 +0000 UTC m=+44.833186634 I0420 04:46:38.796510 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-20 04:46:38.796500818 +0000 UTC m=+44.855926266 I0420 04:46:38.798501 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:38.798561 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:46:38.798585 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 04:46:38.798579931 +0000 UTC m=+44.858005389 I0420 04:46:39.069030 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9nmr2" condition "Approved" to 2026-04-20 04:46:39.069019446 +0000 UTC m=+45.128444904 I0420 04:46:39.102595 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9nmr2" condition "Ready" to 2026-04-20 04:46:39.102585147 +0000 UTC m=+45.162010595 I0420 04:46:39.140283 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:46:39.140269614 +0000 UTC m=+45.199695072 I0420 04:46:39.169504 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:39.169871 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:46:39.169863224 +0000 UTC m=+45.229288682 I0420 04:46:39.182740 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:39.197358 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:46:39.197619 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:46:39.197611665 +0000 UTC m=+45.257037123 I0420 04:50:50.812971 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready" to 2026-04-20 04:50:50.812946283 +0000 UTC m=+296.872371731 I0420 04:50:50.813023 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:50:50.813074 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Issuing" to 2026-04-20 04:50:50.813067426 +0000 UTC m=+296.872492884 I0420 04:50:50.831312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:50:50.831388 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:50:50.831406 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Issuing" to 2026-04-20 04:50:50.831400853 +0000 UTC m=+296.890826301 I0420 04:50:51.021900 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-248.nip.io-tls-kx4c2" condition "Approved" to 2026-04-20 04:50:51.021886554 +0000 UTC m=+297.081312032 I0420 04:50:51.052003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-248.nip.io-tls-kx4c2" condition "Ready" to 2026-04-20 04:50:51.051993185 +0000 UTC m=+297.111418643 I0420 04:50:51.075386 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:50:51.075374874 +0000 UTC m=+297.134800332 I0420 04:50:51.094686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:51:54.380985 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:51:54.381663 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 04:51:54.381647522 +0000 UTC m=+360.441073010 I0420 04:51:54.381361 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 04:51:54.381345956 +0000 UTC m=+360.440771414 E0420 04:51:54.396192 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 04:51:54.396281 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-20 04:51:54.396272299 +0000 UTC m=+360.455697757 E0420 04:51:54.396345 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 04:51:54.396586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:51:54.396650 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:51:54.396668 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 04:51:54.396663489 +0000 UTC m=+360.456088947 E0420 04:51:54.403896 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0420 04:51:54.403962 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 04:51:54.403991 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 04:51:54.404020 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0420 04:51:54.432040 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-rpqlw" condition "Approved" to 2026-04-20 04:51:54.432029092 +0000 UTC m=+360.491454550 I0420 04:51:54.444047 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-rpqlw" condition "Ready" to 2026-04-20 04:51:54.444037318 +0000 UTC m=+360.503462796 I0420 04:51:54.462449 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:51:54.462441401 +0000 UTC m=+360.521866859 I0420 04:51:54.474944 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:51:54.475387 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:51:54.47538232 +0000 UTC m=+360.534807758 I0420 04:51:54.487031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:51:59.405089 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:51:59.405070865 +0000 UTC m=+365.464496353 I0420 04:52:39.104538 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:52:39.104567 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-20 04:52:39.104560606 +0000 UTC m=+405.163986054 I0420 04:52:39.109272 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 04:52:39.109266412 +0000 UTC m=+405.168691850 I0420 04:52:39.120334 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:52:39.120361 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 04:52:39.120355528 +0000 UTC m=+405.179780966 I0420 04:52:39.120395 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-20 04:52:39.12038618 +0000 UTC m=+405.179811628 I0420 04:52:39.122514 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 04:52:39.122508192 +0000 UTC m=+405.181933640 I0420 04:52:39.122844 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:52:39.122863 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 04:52:39.122859869 +0000 UTC m=+405.182285317 I0420 04:52:39.154594 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.155085 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.157493 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 04:52:39.157479916 +0000 UTC m=+405.216905364 I0420 04:52:39.156176 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 04:52:39.156164849 +0000 UTC m=+405.215590327 I0420 04:52:39.190951 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.191000 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:52:39.191016 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 04:52:39.19101058 +0000 UTC m=+405.250436028 I0420 04:52:39.312906 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.337450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-g9l42" condition "Approved" to 2026-04-20 04:52:39.337435697 +0000 UTC m=+405.396861155 I0420 04:52:39.362326 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-g9l42" condition "Ready" to 2026-04-20 04:52:39.362316315 +0000 UTC m=+405.421741763 I0420 04:52:39.364492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.408830 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9w5xt" condition "Approved" to 2026-04-20 04:52:39.408820883 +0000 UTC m=+405.468246341 I0420 04:52:39.416771 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:39.416760055 +0000 UTC m=+405.476185503 I0420 04:52:39.427670 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.427911 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:39.427905033 +0000 UTC m=+405.487330481 I0420 04:52:39.429677 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-9w5xt" condition "Ready" to 2026-04-20 04:52:39.429668399 +0000 UTC m=+405.489093837 I0420 04:52:39.459304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.538839 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:39.538830166 +0000 UTC m=+405.598255614 I0420 04:52:39.641485 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:39.641817 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:39.641811188 +0000 UTC m=+405.701236646 I0420 04:52:40.042666 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:40.092826 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:40.146234 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6t6nm" condition "Approved" to 2026-04-20 04:52:40.146219022 +0000 UTC m=+406.205644500 I0420 04:52:40.247173 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6t6nm" condition "Ready" to 2026-04-20 04:52:40.247162406 +0000 UTC m=+406.306587864 I0420 04:52:40.740937 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:40.740924826 +0000 UTC m=+406.800350284 I0420 04:52:40.842935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:40.843281 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:40.84327354 +0000 UTC m=+406.902698988 I0420 04:52:41.038450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:50.109956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:52:50.109988 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" condition "Issuing" to 2026-04-20 04:52:50.109979865 +0000 UTC m=+416.169405323 I0420 04:52:50.110218 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" condition "Ready" to 2026-04-20 04:52:50.11020007 +0000 UTC m=+416.169625538 I0420 04:52:50.130301 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:50.130447 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" condition "Ready" to 2026-04-20 04:52:50.130414472 +0000 UTC m=+416.189839930 I0420 04:52:50.406216 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:52:50.457605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-pkl5n-wqkfv" condition "Approved" to 2026-04-20 04:52:50.457590811 +0000 UTC m=+416.517016259 I0420 04:52:50.487212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-pkl5n-wqkfv" condition "Ready" to 2026-04-20 04:52:50.48720124 +0000 UTC m=+416.546626688 I0420 04:52:50.517079 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:52:50.517064314 +0000 UTC m=+416.576489762 I0420 04:52:50.542359 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-pkl5n-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:53:02.525551 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:53:02.525550 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 04:53:02.525525249 +0000 UTC m=+428.584950697 I0420 04:53:02.525583 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 04:53:02.5255764 +0000 UTC m=+428.585001858 I0420 04:53:02.539902 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:53:02.540005 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:53:02.540050 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 04:53:02.540042531 +0000 UTC m=+428.599468239 I0420 04:53:03.235806 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mrl5s" condition "Approved" to 2026-04-20 04:53:03.235789209 +0000 UTC m=+429.295214667 I0420 04:53:03.255785 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mrl5s" condition "Ready" to 2026-04-20 04:53:03.255774186 +0000 UTC m=+429.315199644 I0420 04:53:03.286791 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:53:03.286774856 +0000 UTC m=+429.346200334 I0420 04:53:03.307828 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:53:03.308161 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:53:03.308153439 +0000 UTC m=+429.367578897 I0420 04:53:03.324640 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:56:19.696200 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 04:56:19.6961843 +0000 UTC m=+625.755609778 I0420 04:56:19.697240 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:56:19.697323 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 04:56:19.697313418 +0000 UTC m=+625.756738896 I0420 04:56:19.713349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:56:19.713412 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:56:19.713429 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 04:56:19.713423395 +0000 UTC m=+625.772848853 I0420 04:56:19.850315 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xz62h" condition "Approved" to 2026-04-20 04:56:19.850306384 +0000 UTC m=+625.909731832 I0420 04:56:19.872824 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xz62h" condition "Ready" to 2026-04-20 04:56:19.872816409 +0000 UTC m=+625.932241847 I0420 04:56:19.906005 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:56:19.905990138 +0000 UTC m=+625.965415596 I0420 04:56:19.931346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:56:19.971497 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:56:59.979721 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-20 04:56:59.979701533 +0000 UTC m=+666.039127021 I0420 04:56:59.979868 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:56:59.979915 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-20 04:56:59.979905207 +0000 UTC m=+666.039330685 I0420 04:57:00.006264 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:57:00.006449 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 04:57:00.006509 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-20 04:57:00.006498916 +0000 UTC m=+666.065924434 I0420 04:57:00.196539 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-s7bzb" condition "Approved" to 2026-04-20 04:57:00.196528194 +0000 UTC m=+666.255953642 I0420 04:57:00.217927 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-s7bzb" condition "Ready" to 2026-04-20 04:57:00.217917715 +0000 UTC m=+666.277343163 I0420 04:57:00.246394 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:57:00.246381904 +0000 UTC m=+666.305807362 I0420 04:57:00.272144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:57:00.277746 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:57:00.278833 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:57:00.278823941 +0000 UTC m=+666.338249399 I0420 04:57:00.288109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:57:00.288579 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 04:57:00.288789 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 04:57:00.288782801 +0000 UTC m=+666.348208249