I0403 02:57:53.234143 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0403 02:57:53.234315 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0403 02:57:53.234438 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0403 02:57:53.240218 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0403 02:57:53.241131 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0403 02:57:53.241338 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0403 02:57:53.241515 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0403 02:57:53.245403 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0403 02:57:53.264481 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0403 02:57:53.269543 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0403 02:57:53.276523 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0403 02:57:53.279162 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0403 02:57:53.281198 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0403 02:57:53.283233 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0403 02:57:53.285565 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0403 02:57:53.285600 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0403 02:57:53.285610 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0403 02:57:53.285659 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0403 02:57:53.287695 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0403 02:57:53.291918 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0403 02:57:53.296405 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0403 02:57:53.300868 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0403 02:57:53.303055 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0403 02:57:53.304886 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0403 02:57:53.307006 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0403 02:57:53.308907 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0403 02:57:53.311210 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0403 02:57:53.316276 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0403 02:57:53.319314 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0403 02:57:53.319351 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0403 02:57:53.319360 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0403 02:57:53.319428 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0403 02:57:53.321967 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0403 02:57:53.323911 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.324968 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.325618 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.326624 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.343407 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.358750 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.376539 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.396239 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.414950 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:57:53.417518 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0403 02:58:07.369789 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-03 02:58:07.369770968 +0000 UTC m=+14.171949281 I0403 02:58:08.080949 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-03 02:58:08.080930066 +0000 UTC m=+14.883108409 I0403 02:58:08.081034 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 02:58:08.081087 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-03 02:58:08.0810755 +0000 UTC m=+14.883253833 E0403 02:58:08.096388 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0403 02:58:08.096459 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-03 02:58:08.096451281 +0000 UTC m=+14.898629594 E0403 02:58:08.096486 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0403 02:58:08.099323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 02:58:08.099410 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 02:58:08.099444 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-03 02:58:08.099435949 +0000 UTC m=+14.901614262 E0403 02:58:08.109192 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0403 02:58:08.109357 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0403 02:58:08.109394 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0403 02:58:08.109457 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0403 02:58:08.149397 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rjhx8" condition "Approved" to 2026-04-03 02:58:08.149378559 +0000 UTC m=+14.951556892 I0403 02:58:08.149573 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 02:58:08.166776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rjhx8" condition "Ready" to 2026-04-03 02:58:08.166759145 +0000 UTC m=+14.968937478 I0403 02:58:08.189779 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 02:58:08.18976609 +0000 UTC m=+14.991944393 I0403 02:58:08.206581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 02:58:13.110524 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 02:58:13.110506047 +0000 UTC m=+19.912684380 I0403 02:58:35.727974 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-03 02:58:35.727951269 +0000 UTC m=+42.530129582 I0403 02:58:35.728025 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 02:58:35.728057 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-03 02:58:35.728051092 +0000 UTC m=+42.530229405 I0403 02:58:35.738874 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-03 02:58:35.738856338 +0000 UTC m=+42.541034641 I0403 02:58:35.752886 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0403 02:58:35.753058 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 02:58:35.753100 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-03 02:58:35.753091973 +0000 UTC m=+42.555270286 I0403 02:58:35.987892 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6nl67" condition "Approved" to 2026-04-03 02:58:35.987869655 +0000 UTC m=+42.790047988 I0403 02:58:36.024332 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6nl67" condition "Ready" to 2026-04-03 02:58:36.024308765 +0000 UTC m=+42.826487078 I0403 02:58:36.053455 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 02:58:36.053434159 +0000 UTC m=+42.855612472 I0403 02:58:36.075170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0403 02:58:36.076927 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 02:58:36.076910534 +0000 UTC m=+42.879088877 I0403 02:58:36.096730 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0403 02:58:36.099151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:26.774284 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 03:00:26.774315 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-03 03:00:26.774295625 +0000 UTC m=+153.576473958 I0403 03:00:26.774347 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-03 03:00:26.774336346 +0000 UTC m=+153.576514679 I0403 03:00:26.796415 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:26.796490 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 03:00:26.796508 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-03 03:00:26.796501944 +0000 UTC m=+153.598680237 E0403 03:00:26.801042 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0403 03:00:26.801133 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-03 03:00:26.801125768 +0000 UTC m=+153.603304081 I0403 03:00:26.801156 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0403 03:00:26.811758 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0403 03:00:26.812001 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0403 03:00:26.812069 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0403 03:00:26.812146 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0403 03:00:26.815101 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-03 03:00:26.815090532 +0000 UTC m=+153.617268845 I0403 03:00:26.815175 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 03:00:26.815210 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-03 03:00:26.815202464 +0000 UTC m=+153.617380767 I0403 03:00:26.829372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:26.829463 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-03 03:00:26.829452764 +0000 UTC m=+153.631631097 I0403 03:00:26.891034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:26.902158 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-dc8h4" condition "Approved" to 2026-04-03 03:00:26.902135896 +0000 UTC m=+153.704314209 I0403 03:00:26.933388 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-dc8h4" condition "Ready" to 2026-04-03 03:00:26.933373657 +0000 UTC m=+153.735551960 I0403 03:00:26.963422 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:00:26.963404242 +0000 UTC m=+153.765582555 I0403 03:00:26.984159 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:26.984556 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:00:26.984548576 +0000 UTC m=+153.786726899 I0403 03:00:27.003374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:27.003771 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:00:27.003759148 +0000 UTC m=+153.805937491 I0403 03:00:27.225424 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:27.258063 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-bv2rh" condition "Approved" to 2026-04-03 03:00:27.258042088 +0000 UTC m=+154.060220391 I0403 03:00:27.279247 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-bv2rh" condition "Ready" to 2026-04-03 03:00:27.279232363 +0000 UTC m=+154.081410706 I0403 03:00:31.812867 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:00:31.812850992 +0000 UTC m=+158.615029295 I0403 03:00:31.831283 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-bv2rh" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:00:31.831257185 +0000 UTC m=+158.633435518 I0403 03:00:31.863834 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:00:31.863816857 +0000 UTC m=+158.665995170 I0403 03:00:31.884580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:00:31.951501 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:03:19.391389 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready" to 2026-04-03 03:03:19.391370003 +0000 UTC m=+326.193548336 I0403 03:03:19.391405 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-25.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 03:03:19.391658 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Issuing" to 2026-04-03 03:03:19.391638739 +0000 UTC m=+326.193817052 I0403 03:03:19.431996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:03:19.432078 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-25.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 03:03:19.432101 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Issuing" to 2026-04-03 03:03:19.432093594 +0000 UTC m=+326.234271897 I0403 03:03:19.855714 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-25.nip.io-tls-dcjd5" condition "Approved" to 2026-04-03 03:03:19.85570038 +0000 UTC m=+326.657878683 I0403 03:03:19.876799 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-25.nip.io-tls-dcjd5" condition "Ready" to 2026-04-03 03:03:19.876784491 +0000 UTC m=+326.678962834 I0403 03:03:19.911685 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:03:19.911669132 +0000 UTC m=+326.713847445 I0403 03:03:19.947823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:03:19.948269 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:03:19.94825841 +0000 UTC m=+326.750436753 I0403 03:03:19.964081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:03:19.964194 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-25.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-25.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:03:19.964369 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-25.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:03:19.9643613 +0000 UTC m=+326.766539603 I0403 03:04:32.788886 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-03 03:04:32.788868188 +0000 UTC m=+399.591046501 I0403 03:04:32.789387 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0403 03:04:32.789502 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-03 03:04:32.789487933 +0000 UTC m=+399.591666276 E0403 03:04:32.803661 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0403 03:04:32.803723 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-03 03:04:32.803711341 +0000 UTC m=+399.605889674 E0403 03:04:32.803803 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0403 03:04:32.806986 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:04:32.807183 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-03 03:04:32.807168588 +0000 UTC m=+399.609346911 E0403 03:04:32.861871 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0403 03:04:32.862005 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0403 03:04:32.862134 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0403 03:04:32.862282 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0403 03:04:32.874753 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:04:32.900390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mrdz7" condition "Approved" to 2026-04-03 03:04:32.900368801 +0000 UTC m=+399.702547114 I0403 03:04:32.914868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mrdz7" condition "Ready" to 2026-04-03 03:04:32.914855315 +0000 UTC m=+399.717033628 I0403 03:04:32.940401 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:04:32.940376476 +0000 UTC m=+399.742554819 I0403 03:04:32.958630 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:04:33.015457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0403 03:04:37.862849 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-03 03:04:37.862832063 +0000 UTC m=+404.665010406