I0407 12:56:27.643436 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0407 12:56:27.643581 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0407 12:56:27.643685 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0407 12:56:27.649504 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0407 12:56:27.650048 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0407 12:56:27.650151 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0407 12:56:27.650160 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0407 12:56:27.652512 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0407 12:56:27.664869 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0407 12:56:27.667996 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0407 12:56:27.671123 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0407 12:56:27.678121 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0407 12:56:27.678247 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0407 12:56:27.682304 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0407 12:56:27.686118 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0407 12:56:27.688032 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0407 12:56:27.689686 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0407 12:56:27.689813 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0407 12:56:27.691402 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0407 12:56:27.693038 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0407 12:56:27.693055 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0407 12:56:27.693102 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0407 12:56:27.697120 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0407 12:56:27.701407 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0407 12:56:27.701466 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0407 12:56:27.705455 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0407 12:56:27.708904 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0407 12:56:27.711619 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0407 12:56:27.713848 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0407 12:56:27.715941 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0407 12:56:27.717950 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0407 12:56:27.718139 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0407 12:56:27.720295 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0407 12:56:27.723373 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.724813 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.725142 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.725356 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.725730 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.726515 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.726862 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.727577 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.727850 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:27.810374 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0407 12:56:40.240282 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-07 12:56:40.240244789 +0000 UTC m=+12.626124684 I0407 12:56:40.912768 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:56:40.912833 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 12:56:40.912823305 +0000 UTC m=+13.298703220 I0407 12:56:40.913022 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-07 12:56:40.91300448 +0000 UTC m=+13.298884405 E0407 12:56:40.925874 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 12:56:40.925973 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-07 12:56:40.925963894 +0000 UTC m=+13.311843799 E0407 12:56:40.926004 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 12:56:40.929682 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:56:40.929774 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:56:40.929823 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-07 12:56:40.929816417 +0000 UTC m=+13.315696322 E0407 12:56:40.935518 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0407 12:56:40.935593 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 12:56:40.935623 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 12:56:40.935655 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0407 12:56:40.971868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jgmdm" condition "Approved" to 2026-04-07 12:56:40.97185017 +0000 UTC m=+13.357730095 I0407 12:56:40.987889 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jgmdm" condition "Ready" to 2026-04-07 12:56:40.98786722 +0000 UTC m=+13.373747155 I0407 12:56:41.009017 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:56:41.00900327 +0000 UTC m=+13.394883205 I0407 12:56:41.027104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:56:41.027401 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:56:41.02739445 +0000 UTC m=+13.413274355 I0407 12:56:41.043285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:56:45.936751 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:56:45.936738026 +0000 UTC m=+18.322617951 I0407 12:57:06.755398 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:57:06.755402 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 12:57:06.755385731 +0000 UTC m=+39.141265636 I0407 12:57:06.755490 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-07 12:57:06.755480905 +0000 UTC m=+39.141360810 I0407 12:57:06.768369 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-07 12:57:06.768354101 +0000 UTC m=+39.154233996 I0407 12:57:06.786099 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:57:06.786178 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-07 12:57:06.786171202 +0000 UTC m=+39.172051097 I0407 12:57:06.932229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:57:06.967872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-kzzdz" condition "Approved" to 2026-04-07 12:57:06.967858355 +0000 UTC m=+39.353738250 I0407 12:57:07.003979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-kzzdz" condition "Ready" to 2026-04-07 12:57:07.003967387 +0000 UTC m=+39.389847292 I0407 12:57:07.035277 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:57:07.035265118 +0000 UTC m=+39.421145023 I0407 12:57:07.056421 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:57:07.056901 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:57:07.056892084 +0000 UTC m=+39.442772009 I0407 12:57:07.079521 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:49.859608 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:58:49.859662 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-07 12:58:49.859652502 +0000 UTC m=+142.245532427 I0407 12:58:49.859609 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-07 12:58:49.859593111 +0000 UTC m=+142.245473036 E0407 12:58:49.878338 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0407 12:58:49.878388 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-07 12:58:49.878380618 +0000 UTC m=+142.264260523 I0407 12:58:49.878431 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0407 12:58:49.888641 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0407 12:58:49.889347 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0407 12:58:49.889367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:49.889450 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:58:49.889484 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0407 12:58:49.889487 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-07 12:58:49.889476345 +0000 UTC m=+142.275356270 E0407 12:58:49.889525 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0407 12:58:49.899910 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-07 12:58:49.899902648 +0000 UTC m=+142.285782553 I0407 12:58:49.900008 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:58:49.900044 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-07 12:58:49.900033321 +0000 UTC m=+142.285913226 I0407 12:58:49.917018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:49.917067 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 12:58:49.917082 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-07 12:58:49.917074807 +0000 UTC m=+142.302954712 I0407 12:58:50.046647 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:50.053140 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9vt4t" condition "Approved" to 2026-04-07 12:58:50.053119567 +0000 UTC m=+142.438999512 I0407 12:58:50.070374 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9vt4t" condition "Ready" to 2026-04-07 12:58:50.070358098 +0000 UTC m=+142.456238023 I0407 12:58:50.234599 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:50.252455 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-k6ksk" condition "Approved" to 2026-04-07 12:58:50.252442389 +0000 UTC m=+142.638322314 I0407 12:58:50.286179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-k6ksk" condition "Ready" to 2026-04-07 12:58:50.286164742 +0000 UTC m=+142.672044667 I0407 12:58:50.337092 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:58:50.337079886 +0000 UTC m=+142.722959791 I0407 12:58:50.366956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:50.367246 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:58:50.367239046 +0000 UTC m=+142.753118951 I0407 12:58:50.411112 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:54.890644 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:58:54.890628509 +0000 UTC m=+147.276508414 I0407 12:58:54.905861 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-9vt4t" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:58:54.905855483 +0000 UTC m=+147.291735388 I0407 12:58:54.934383 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:58:54.934364736 +0000 UTC m=+147.320244671 I0407 12:58:54.950210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:54.950581 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 12:58:54.950572592 +0000 UTC m=+147.336452497 I0407 12:58:54.961609 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 12:58:54.968118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:01:21.287270 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready" to 2026-04-07 13:01:21.287235069 +0000 UTC m=+293.673114994 I0407 13:01:21.287306 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-233.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:01:21.287351 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Issuing" to 2026-04-07 13:01:21.287339672 +0000 UTC m=+293.673219597 I0407 13:01:21.304403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:01:21.304462 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-233.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:01:21.304474 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Issuing" to 2026-04-07 13:01:21.304469216 +0000 UTC m=+293.690349111 I0407 13:01:21.536340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-233.nip.io-tls-48hq4" condition "Approved" to 2026-04-07 13:01:21.536326678 +0000 UTC m=+293.922206613 I0407 13:01:21.555609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-233.nip.io-tls-48hq4" condition "Ready" to 2026-04-07 13:01:21.555598694 +0000 UTC m=+293.941478599 I0407 13:01:21.579804 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:01:21.579792642 +0000 UTC m=+293.965672547 I0407 13:01:21.600954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:01:21.601237 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:01:21.601230571 +0000 UTC m=+293.987110476 I0407 13:01:21.635556 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:01:21.635987 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:01:21.635976743 +0000 UTC m=+294.021856678 I0407 13:01:21.640975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:02:30.580273 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-07 13:02:30.58025768 +0000 UTC m=+362.966137595 I0407 13:02:30.580381 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:02:30.580422 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 13:02:30.580414963 +0000 UTC m=+362.966294848 E0407 13:02:30.591575 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 13:02:30.592566 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-07 13:02:30.592555882 +0000 UTC m=+362.978435787 E0407 13:02:30.592658 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0407 13:02:30.593467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:02:30.593564 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:02:30.593601 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-07 13:02:30.593593536 +0000 UTC m=+362.979473451 E0407 13:02:30.602929 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0407 13:02:30.603287 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 13:02:30.603361 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0407 13:02:30.603453 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0407 13:02:30.621366 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:02:30.625437 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-p665p" condition "Approved" to 2026-04-07 13:02:30.625422562 +0000 UTC m=+363.011302467 I0407 13:02:30.637985 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-p665p" condition "Ready" to 2026-04-07 13:02:30.63797506 +0000 UTC m=+363.023854955 I0407 13:02:30.657657 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:02:30.657639517 +0000 UTC m=+363.043519442 I0407 13:02:30.675427 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:02:30.721190 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:02:35.604133 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:02:35.604120354 +0000 UTC m=+367.990000289 I0407 13:03:12.286198 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:03:12.286242 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-07 13:03:12.286232829 +0000 UTC m=+404.672112744 I0407 13:03:12.286302 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 13:03:12.28628282 +0000 UTC m=+404.672162735 I0407 13:03:12.302550 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:03:12.302580 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-07 13:03:12.302573897 +0000 UTC m=+404.688453792 I0407 13:03:12.302615 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-07 13:03:12.302609818 +0000 UTC m=+404.688489713 I0407 13:03:12.302985 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:03:12.303005 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 13:03:12.303000867 +0000 UTC m=+404.688880782 I0407 13:03:12.303128 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-07 13:03:12.30312199 +0000 UTC m=+404.689001905 I0407 13:03:12.329797 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:12.333252 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-07 13:03:12.333244175 +0000 UTC m=+404.719124070 I0407 13:03:12.339874 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:12.340051 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:03:12.340074 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-07 13:03:12.340068277 +0000 UTC m=+404.725948172 I0407 13:03:12.356046 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:12.356091 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-07 13:03:12.356085407 +0000 UTC m=+404.741965302 I0407 13:03:12.631438 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:12.661698 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-g4hzs" condition "Approved" to 2026-04-07 13:03:12.661685054 +0000 UTC m=+405.047564959 I0407 13:03:12.668668 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ctxxh" condition "Approved" to 2026-04-07 13:03:12.668654289 +0000 UTC m=+405.054534204 I0407 13:03:12.684255 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-g4hzs" condition "Ready" to 2026-04-07 13:03:12.68423554 +0000 UTC m=+405.070115455 I0407 13:03:12.686248 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ctxxh" condition "Ready" to 2026-04-07 13:03:12.686238347 +0000 UTC m=+405.072118242 I0407 13:03:12.697811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:12.720571 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:03:12.720560262 +0000 UTC m=+405.106440167 I0407 13:03:12.733893 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:03:12.733887299 +0000 UTC m=+405.119767204 I0407 13:03:12.747687 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-wpcxg" condition "Approved" to 2026-04-07 13:03:12.747673086 +0000 UTC m=+405.133552991 I0407 13:03:12.756396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:12.762754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:13.036027 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-wpcxg" condition "Ready" to 2026-04-07 13:03:13.036015222 +0000 UTC m=+405.421895127 I0407 13:03:13.527620 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:03:13.527607206 +0000 UTC m=+405.913487111 I0407 13:03:13.778581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:13.779040 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:03:13.779031397 +0000 UTC m=+406.164911322 I0407 13:03:14.129948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:14.227636 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:14.277372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:44.158648 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" condition "Ready" to 2026-04-07 13:03:44.158629399 +0000 UTC m=+436.544509324 I0407 13:03:44.158831 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:03:44.158885 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" condition "Issuing" to 2026-04-07 13:03:44.158873625 +0000 UTC m=+436.544753560 I0407 13:03:44.172319 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nstgc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:44.172471 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:03:44.172503 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" condition "Issuing" to 2026-04-07 13:03:44.172496041 +0000 UTC m=+436.558375946 I0407 13:03:44.549328 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nstgc-jw965" condition "Approved" to 2026-04-07 13:03:44.549315367 +0000 UTC m=+436.935195272 I0407 13:03:44.566354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-nstgc-jw965" condition "Ready" to 2026-04-07 13:03:44.566342402 +0000 UTC m=+436.952222307 I0407 13:03:44.593788 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:03:44.593776479 +0000 UTC m=+436.979656364 I0407 13:03:44.611566 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nstgc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:03:44.611857 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:03:44.611849948 +0000 UTC m=+436.997729863 I0407 13:03:44.629273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-nstgc-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-nstgc-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:04:15.346310 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:04:15.346343 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-07 13:04:15.346335987 +0000 UTC m=+467.732215892 I0407 13:04:15.346456 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-07 13:04:15.346432009 +0000 UTC m=+467.732311944 I0407 13:04:15.361606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:04:15.361730 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:04:15.361756 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-07 13:04:15.361749255 +0000 UTC m=+467.747629160 I0407 13:04:15.534781 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-c4ftz" condition "Approved" to 2026-04-07 13:04:15.53476583 +0000 UTC m=+467.920645735 I0407 13:04:15.553078 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-c4ftz" condition "Ready" to 2026-04-07 13:04:15.553068005 +0000 UTC m=+467.938947910 I0407 13:04:15.580481 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:04:15.580460111 +0000 UTC m=+467.966340016 I0407 13:04:15.598699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:04:15.598999 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:04:15.59899081 +0000 UTC m=+467.984870715 I0407 13:04:15.640193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:04:15.644961 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:07:23.458608 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:07:23.458652 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-07 13:07:23.45864244 +0000 UTC m=+655.844522345 I0407 13:07:23.458676 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-07 13:07:23.45865583 +0000 UTC m=+655.844535755 I0407 13:07:23.477425 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:07:23.477484 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-07 13:07:23.47747872 +0000 UTC m=+655.863358635 I0407 13:07:23.756196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:07:23.781362 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wn4s5" condition "Approved" to 2026-04-07 13:07:23.781349189 +0000 UTC m=+656.167229094 I0407 13:07:23.800934 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wn4s5" condition "Ready" to 2026-04-07 13:07:23.800922175 +0000 UTC m=+656.186802080 I0407 13:07:23.831129 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:07:23.831113985 +0000 UTC m=+656.216993890 I0407 13:07:23.849020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:09:49.638915 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:09:49.638922 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-07 13:09:49.638880988 +0000 UTC m=+802.024760913 I0407 13:09:49.638968 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-07 13:09:49.63896191 +0000 UTC m=+802.024841805 I0407 13:09:49.655315 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:09:49.655896 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-07 13:09:49.655886503 +0000 UTC m=+802.041766408 I0407 13:09:49.977330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:09:50.005630 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-47chz" condition "Approved" to 2026-04-07 13:09:50.005617282 +0000 UTC m=+802.391497207 I0407 13:09:50.024826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-47chz" condition "Ready" to 2026-04-07 13:09:50.024812709 +0000 UTC m=+802.410692614 I0407 13:09:50.050735 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:09:50.050721018 +0000 UTC m=+802.436600943 I0407 13:09:50.071934 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:10:57.842505 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:10:57.842549 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-07 13:10:57.842538959 +0000 UTC m=+870.228418884 I0407 13:10:57.842769 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-07 13:10:57.842749544 +0000 UTC m=+870.228629449 I0407 13:10:57.865037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:10:57.865136 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:10:57.865192 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-07 13:10:57.865185829 +0000 UTC m=+870.251065734 I0407 13:10:58.094250 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-zsw78" condition "Approved" to 2026-04-07 13:10:58.094236271 +0000 UTC m=+870.480116186 I0407 13:10:58.113939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-zsw78" condition "Ready" to 2026-04-07 13:10:58.11392707 +0000 UTC m=+870.499806975 I0407 13:10:58.152289 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:10:58.152270975 +0000 UTC m=+870.538150910 I0407 13:10:58.173269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:10:58.224530 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:14:02.028348 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:14:02.028415 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-07 13:14:02.028408218 +0000 UTC m=+1054.414288113 I0407 13:14:02.028729 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-07 13:14:02.028713225 +0000 UTC m=+1054.414593150 I0407 13:14:02.045320 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:14:02.045490 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0407 13:14:02.045562 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-07 13:14:02.045553386 +0000 UTC m=+1054.431433321 I0407 13:14:02.340662 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0407 13:14:02.348629 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-p96jb" condition "Approved" to 2026-04-07 13:14:02.348596722 +0000 UTC m=+1054.734476647 I0407 13:14:02.371316 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-p96jb" condition "Ready" to 2026-04-07 13:14:02.371302823 +0000 UTC m=+1054.757182718 I0407 13:14:02.406627 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-07 13:14:02.406612465 +0000 UTC m=+1054.792492370 I0407 13:14:02.427143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"