I0409 22:25:21.368986 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0409 22:25:21.369175 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0409 22:25:21.369299 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 22:25:21.380536 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0409 22:25:21.381249 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0409 22:25:21.381321 1 controller.go:156] "cert-manager/controller: starting leader election" I0409 22:25:21.381720 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0409 22:25:21.383462 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 22:25:21.404573 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0409 22:25:21.408432 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0409 22:25:21.414321 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0409 22:25:21.416226 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0409 22:25:21.417824 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0409 22:25:21.417845 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0409 22:25:21.417903 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0409 22:25:21.419782 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0409 22:25:21.421341 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0409 22:25:21.421404 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0409 22:25:21.423504 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0409 22:25:21.425285 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0409 22:25:21.431258 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0409 22:25:21.434965 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0409 22:25:21.437742 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0409 22:25:21.439449 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0409 22:25:21.441145 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0409 22:25:21.442740 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0409 22:25:21.442761 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0409 22:25:21.442922 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0409 22:25:21.444694 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0409 22:25:21.446436 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0409 22:25:21.449031 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0409 22:25:21.453956 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0409 22:25:21.454017 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0409 22:25:38.306705 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-09 22:25:38.306660305 +0000 UTC m=+16.966480971 I0409 22:25:38.985097 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 22:25:38.985078446 +0000 UTC m=+17.644899122 I0409 22:25:38.985331 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:25:38.985430 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 22:25:38.985387965 +0000 UTC m=+17.645208621 E0409 22:25:39.000616 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:25:39.000664 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-09 22:25:39.000654326 +0000 UTC m=+17.660474982 E0409 22:25:39.001084 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:25:39.002682 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:25:39.002764 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 22:25:39.002754708 +0000 UTC m=+17.662575334 E0409 22:25:39.014151 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0409 22:25:39.014861 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:25:39.014913 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:25:39.015034 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0409 22:25:39.021910 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:25:39.038675 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-pxhjh" condition "Approved" to 2026-04-09 22:25:39.038657575 +0000 UTC m=+17.698478241 I0409 22:25:39.051429 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-pxhjh" condition "Ready" to 2026-04-09 22:25:39.051414847 +0000 UTC m=+17.711235483 I0409 22:25:39.079642 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:25:39.079624931 +0000 UTC m=+17.739445587 I0409 22:25:39.097171 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:25:39.133062 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:25:44.015251 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:25:44.015231674 +0000 UTC m=+22.675052330 I0409 22:26:05.045835 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 22:26:05.045804409 +0000 UTC m=+43.705625035 I0409 22:26:05.046043 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:26:05.046147 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 22:26:05.046137506 +0000 UTC m=+43.705958172 I0409 22:26:05.069574 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-09 22:26:05.069560361 +0000 UTC m=+43.729380997 I0409 22:26:05.070067 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:26:05.070133 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:26:05.070155 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 22:26:05.070148784 +0000 UTC m=+43.729969420 I0409 22:26:05.394867 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:26:05.402165 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vvpnq" condition "Approved" to 2026-04-09 22:26:05.402153125 +0000 UTC m=+44.061973771 I0409 22:26:05.443806 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-vvpnq" condition "Ready" to 2026-04-09 22:26:05.443791489 +0000 UTC m=+44.103612125 I0409 22:26:05.478531 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:26:05.478518718 +0000 UTC m=+44.138339354 I0409 22:26:05.503318 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:26:05.503770 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:26:05.503765073 +0000 UTC m=+44.163585699 I0409 22:26:05.510821 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:26:05.524992 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:28:39.380195 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-250.nip.io-tls" condition "Ready" to 2026-04-09 22:28:39.379551891 +0000 UTC m=+198.039372557 I0409 22:28:39.384502 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-250.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:28:39.384585 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-250.nip.io-tls" condition "Issuing" to 2026-04-09 22:28:39.384577003 +0000 UTC m=+198.044397639 I0409 22:28:39.401787 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-250.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-250.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:28:39.401884 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-250.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:28:39.401935 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-250.nip.io-tls" condition "Issuing" to 2026-04-09 22:28:39.40192492 +0000 UTC m=+198.061745576 I0409 22:28:39.752510 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-250.nip.io-tls-ct8nv" condition "Approved" to 2026-04-09 22:28:39.752490908 +0000 UTC m=+198.412311574 I0409 22:28:39.782321 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-250.nip.io-tls-ct8nv" condition "Ready" to 2026-04-09 22:28:39.782304472 +0000 UTC m=+198.442125098 I0409 22:28:39.808265 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-250.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:28:39.808249828 +0000 UTC m=+198.468070454 I0409 22:28:39.827453 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-250.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-250.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:29:35.615122 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 22:29:35.615082428 +0000 UTC m=+254.274903094 I0409 22:29:35.616332 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:29:35.616385 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 22:29:35.61636931 +0000 UTC m=+254.276189966 E0409 22:29:35.631720 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:29:35.631899 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-09 22:29:35.631767828 +0000 UTC m=+254.291588464 E0409 22:29:35.632020 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:29:35.632335 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:29:35.632392 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:29:35.632410 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 22:29:35.632403954 +0000 UTC m=+254.292224610 E0409 22:29:35.653711 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0409 22:29:35.653981 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:29:35.654022 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:29:35.654208 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0409 22:29:35.690799 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8fxnl" condition "Approved" to 2026-04-09 22:29:35.690710479 +0000 UTC m=+254.350531135 I0409 22:29:35.708465 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8fxnl" condition "Ready" to 2026-04-09 22:29:35.708454229 +0000 UTC m=+254.368274865 I0409 22:29:35.742354 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:29:35.742338452 +0000 UTC m=+254.402159088 I0409 22:29:35.781876 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:29:35.782178 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:29:35.782169352 +0000 UTC m=+254.441989988 I0409 22:29:35.865592 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:29:40.654202 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:29:40.654186096 +0000 UTC m=+259.314006752 I0409 22:30:19.835033 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 22:30:19.835008424 +0000 UTC m=+298.494829040 I0409 22:30:19.835969 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:19.836027 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 22:30:19.836020116 +0000 UTC m=+298.495840742 I0409 22:30:19.836616 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 22:30:19.83661091 +0000 UTC m=+298.496431536 I0409 22:30:19.836827 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:19.837018 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 22:30:19.837014159 +0000 UTC m=+298.496834785 I0409 22:30:19.845614 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 22:30:19.845600721 +0000 UTC m=+298.505421347 I0409 22:30:19.845879 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:19.845915 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 22:30:19.845911107 +0000 UTC m=+298.505731733 I0409 22:30:19.880533 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:19.880898 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:19.880925 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 22:30:19.880918842 +0000 UTC m=+298.540739468 I0409 22:30:19.883950 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:19.884060 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 22:30:19.884015982 +0000 UTC m=+298.543836618 I0409 22:30:19.887070 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:19.887118 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 22:30:19.887111691 +0000 UTC m=+298.546932317 I0409 22:30:20.041192 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:20.079960 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-mkxwn" condition "Approved" to 2026-04-09 22:30:20.079947663 +0000 UTC m=+298.739768299 I0409 22:30:20.120628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-mkxwn" condition "Ready" to 2026-04-09 22:30:20.12061814 +0000 UTC m=+298.780438766 I0409 22:30:20.180868 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:20.225024 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-5flw5" condition "Approved" to 2026-04-09 22:30:20.225011847 +0000 UTC m=+298.884832473 I0409 22:30:20.255186 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:20.255171931 +0000 UTC m=+298.914992557 I0409 22:30:20.258044 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-5flw5" condition "Ready" to 2026-04-09 22:30:20.258028884 +0000 UTC m=+298.917849510 I0409 22:30:20.290218 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:20.290535 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:20.290530159 +0000 UTC m=+298.950350785 I0409 22:30:20.292724 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:20.292712518 +0000 UTC m=+298.952533154 I0409 22:30:20.317679 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:20.318180 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:20.579876 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:20.783087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rcssk" condition "Approved" to 2026-04-09 22:30:20.783065364 +0000 UTC m=+299.442885990 I0409 22:30:20.943276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rcssk" condition "Ready" to 2026-04-09 22:30:20.943263617 +0000 UTC m=+299.603084263 I0409 22:30:21.348171 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:21.348155487 +0000 UTC m=+300.007976153 I0409 22:30:21.428021 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:21.428542 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:21.428535453 +0000 UTC m=+300.088356089 I0409 22:30:21.625459 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:28.279877 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:28.279912 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" condition "Issuing" to 2026-04-09 22:30:28.279903007 +0000 UTC m=+306.939723643 I0409 22:30:28.279911 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" condition "Ready" to 2026-04-09 22:30:28.279879856 +0000 UTC m=+306.939700512 I0409 22:30:28.293167 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k97bl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:28.293225 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:28.293239 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" condition "Issuing" to 2026-04-09 22:30:28.293233145 +0000 UTC m=+306.953053781 I0409 22:30:28.554911 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-k97bl-vmdlj" condition "Approved" to 2026-04-09 22:30:28.554893741 +0000 UTC m=+307.214714377 I0409 22:30:28.581267 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-k97bl-vmdlj" condition "Ready" to 2026-04-09 22:30:28.58125385 +0000 UTC m=+307.241074486 I0409 22:30:28.606020 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:28.606006865 +0000 UTC m=+307.265827501 I0409 22:30:28.626570 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k97bl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:28.627202 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:28.627194643 +0000 UTC m=+307.287015279 I0409 22:30:28.659593 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k97bl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:28.659599 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k97bl-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:28.660118 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-k97bl-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:28.660110665 +0000 UTC m=+307.319931291 I0409 22:30:40.622118 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 22:30:40.622104315 +0000 UTC m=+319.281924941 I0409 22:30:40.622418 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:40.622431 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 22:30:40.622428541 +0000 UTC m=+319.282249157 I0409 22:30:40.641498 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:40.641558 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 22:30:40.641550847 +0000 UTC m=+319.301371483 I0409 22:30:40.745123 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:40.772739 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-s4v79" condition "Approved" to 2026-04-09 22:30:40.772725447 +0000 UTC m=+319.432546073 I0409 22:30:40.798953 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-s4v79" condition "Ready" to 2026-04-09 22:30:40.798941228 +0000 UTC m=+319.458761844 I0409 22:30:40.830314 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:40.830300676 +0000 UTC m=+319.490121302 I0409 22:30:40.856857 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:40.857290 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:40.857283843 +0000 UTC m=+319.517104469 I0409 22:30:40.867794 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:40.871175 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:48.561482 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 22:33:48.561457406 +0000 UTC m=+507.221278042 I0409 22:33:48.561845 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:33:48.561867 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 22:33:48.561863091 +0000 UTC m=+507.221683717 I0409 22:33:48.579281 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:48.579337 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:33:48.579352 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 22:33:48.579347362 +0000 UTC m=+507.239167998 I0409 22:33:48.902208 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-l6ncp" condition "Approved" to 2026-04-09 22:33:48.902197131 +0000 UTC m=+507.562017747 I0409 22:33:48.919273 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-l6ncp" condition "Ready" to 2026-04-09 22:33:48.919261206 +0000 UTC m=+507.579081842 I0409 22:33:48.951040 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:48.951024164 +0000 UTC m=+507.610844810 I0409 22:33:48.976632 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:48.977234 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:48.97722768 +0000 UTC m=+507.637048316 I0409 22:33:48.999191 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:48.999648 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:48.999640985 +0000 UTC m=+507.659461611 I0409 22:33:49.004644 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:34:28.774868 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-09 22:34:28.774825839 +0000 UTC m=+547.434646475 I0409 22:34:28.774879 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:34:28.775247 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-09 22:34:28.775226605 +0000 UTC m=+547.435047241 I0409 22:34:28.791210 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:34:28.791273 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:34:28.791290 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-09 22:34:28.791283407 +0000 UTC m=+547.451104043 I0409 22:34:29.411478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nz2xd" condition "Approved" to 2026-04-09 22:34:29.411464871 +0000 UTC m=+548.071285507 I0409 22:34:29.428105 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nz2xd" condition "Ready" to 2026-04-09 22:34:29.428093321 +0000 UTC m=+548.087913967 I0409 22:34:29.452894 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:34:29.452882623 +0000 UTC m=+548.112703259 I0409 22:34:29.475003 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:34:29.475438 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:34:29.475433167 +0000 UTC m=+548.135253793 I0409 22:34:29.493081 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:34:29.495843 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"