I0325 21:07:00.661085 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0325 21:07:00.661253 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0325 21:07:00.661368 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0325 21:07:00.665898 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0325 21:07:00.666368 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0325 21:07:00.666506 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0325 21:07:00.666614 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0325 21:07:00.669146 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0325 21:07:00.684742 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0325 21:07:00.692976 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0325 21:07:00.696213 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0325 21:07:00.698784 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0325 21:07:00.698847 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0325 21:07:00.701606 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0325 21:07:00.704115 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0325 21:07:00.705788 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0325 21:07:00.710755 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0325 21:07:00.710880 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0325 21:07:00.713487 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0325 21:07:00.715971 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0325 21:07:00.716038 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0325 21:07:00.718845 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0325 21:07:00.721340 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0325 21:07:00.724049 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0325 21:07:00.725882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0325 21:07:00.730691 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0325 21:07:00.730723 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0325 21:07:00.730845 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0325 21:07:00.730918 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0325 21:07:00.735131 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0325 21:07:00.737940 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0325 21:07:00.741139 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0325 21:07:00.744129 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0325 21:07:00.746830 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.747144 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.747408 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.747772 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.748541 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.748752 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.748758 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.749101 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.749414 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:00.845889 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:11.205148 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-25 21:07:11.205128135 +0000 UTC m=+10.578674044 I0325 21:07:11.899344 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:07:11.899391 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-25 21:07:11.899380381 +0000 UTC m=+11.272926280 I0325 21:07:11.899772 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:07:11.899744068 +0000 UTC m=+11.273289977 E0325 21:07:11.914949 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:07:11.915042 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-25 21:07:11.915028118 +0000 UTC m=+11.288574027 E0325 21:07:11.915283 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:07:11.920311 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:11.920398 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:07:11.920387494 +0000 UTC m=+11.293933373 E0325 21:07:11.924348 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0325 21:07:11.924438 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:07:11.924471 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:07:11.924507 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0325 21:07:11.934856 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:11.934958 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:07:11.934944329 +0000 UTC m=+11.308490248 I0325 21:07:11.938660 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:11.946250 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rm828" condition "Approved" to 2026-03-25 21:07:11.946224953 +0000 UTC m=+11.319770822 I0325 21:07:11.959417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rm828" condition "Ready" to 2026-03-25 21:07:11.959399618 +0000 UTC m=+11.332945527 I0325 21:07:11.984651 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:11.984640823 +0000 UTC m=+11.358186692 I0325 21:07:12.000674 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:16.925386 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:16.925362755 +0000 UTC m=+16.298908654 I0325 21:07:37.595242 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-25 21:07:37.595220587 +0000 UTC m=+36.968766466 I0325 21:07:37.595273 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:07:37.595343 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-25 21:07:37.595335569 +0000 UTC m=+36.968881448 I0325 21:07:37.606234 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-25 21:07:37.606217402 +0000 UTC m=+36.979763301 I0325 21:07:37.620587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:37.620723 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-25 21:07:37.620713952 +0000 UTC m=+36.994259831 I0325 21:07:37.833237 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:37.865826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-kzs9v" condition "Approved" to 2026-03-25 21:07:37.865809024 +0000 UTC m=+37.239354923 I0325 21:07:37.903194 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-kzs9v" condition "Ready" to 2026-03-25 21:07:37.903179382 +0000 UTC m=+37.276725261 I0325 21:07:37.933821 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:37.933802067 +0000 UTC m=+37.307347936 I0325 21:07:37.961231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:21.514222 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:21.514889 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-25 21:09:21.514418796 +0000 UTC m=+140.887964715 I0325 21:09:21.514886 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 21:09:21.514246833 +0000 UTC m=+140.887792712 E0325 21:09:21.532401 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:09:21.532486 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-25 21:09:21.532465843 +0000 UTC m=+140.906011752 I0325 21:09:21.532579 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:09:21.532864 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:21.532960 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:21.533000 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 21:09:21.532990144 +0000 UTC m=+140.906536043 E0325 21:09:21.551029 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0325 21:09:21.551148 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:09:21.551217 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0325 21:09:21.551262 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0325 21:09:21.552632 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:21.552656 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 21:09:21.552650134 +0000 UTC m=+140.926196013 I0325 21:09:21.552864 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-25 21:09:21.552839868 +0000 UTC m=+140.926385787 I0325 21:09:21.567334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:21.567412 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:21.567458 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 21:09:21.56745142 +0000 UTC m=+140.940997309 I0325 21:09:21.785136 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-hrb64" condition "Approved" to 2026-03-25 21:09:21.785108981 +0000 UTC m=+141.158654890 I0325 21:09:21.849385 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-hrb64" condition "Ready" to 2026-03-25 21:09:21.849371824 +0000 UTC m=+141.222917693 I0325 21:09:21.972078 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:21.977802 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-dbtht" condition "Approved" to 2026-03-25 21:09:21.977781968 +0000 UTC m=+141.351327847 I0325 21:09:22.009376 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-dbtht" condition "Ready" to 2026-03-25 21:09:22.009361412 +0000 UTC m=+141.382907291 I0325 21:09:22.036839 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:22.036823249 +0000 UTC m=+141.410369118 I0325 21:09:22.055786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:22.056249 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:22.056237694 +0000 UTC m=+141.429783603 I0325 21:09:22.062970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:22.072562 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:26.552079 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:26.552065988 +0000 UTC m=+145.925611897 I0325 21:09:26.572468 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-hrb64" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:26.572452884 +0000 UTC m=+145.945998783 I0325 21:09:26.601347 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:26.60132121 +0000 UTC m=+145.974867109 I0325 21:09:26.625702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:11:53.322075 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-113.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:11:53.322135 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-113.nip.io-tls" condition "Issuing" to 2026-03-25 21:11:53.322127137 +0000 UTC m=+292.695673036 I0325 21:11:53.322102 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-113.nip.io-tls" condition "Ready" to 2026-03-25 21:11:53.322062786 +0000 UTC m=+292.695608685 I0325 21:11:53.337887 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-113.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-113.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:11:53.338003 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-113.nip.io-tls" condition "Ready" to 2026-03-25 21:11:53.337987579 +0000 UTC m=+292.711533478 I0325 21:11:53.436613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-113.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-113.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:11:53.464615 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-113.nip.io-tls-pvgrw" condition "Approved" to 2026-03-25 21:11:53.464601164 +0000 UTC m=+292.838147043 I0325 21:11:53.477557 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-113.nip.io-tls-pvgrw" condition "Ready" to 2026-03-25 21:11:53.477540963 +0000 UTC m=+292.851086872 I0325 21:11:53.500609 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-113.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:11:53.500600011 +0000 UTC m=+292.874145890 I0325 21:11:53.515400 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-113.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-113.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:11:53.515668 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-113.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:11:53.515660597 +0000 UTC m=+292.889206476 I0325 21:11:53.532311 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-113.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-113.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:02.902364 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-25 21:13:02.902328086 +0000 UTC m=+362.275873985 I0325 21:13:02.902658 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:02.902741 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 21:13:02.902698974 +0000 UTC m=+362.276244883 E0325 21:13:02.915225 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:13:02.915320 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-25 21:13:02.915271833 +0000 UTC m=+362.288817742 E0325 21:13:02.915470 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:13:02.919420 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:02.919643 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:02.919685 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 21:13:02.919673877 +0000 UTC m=+362.293219776 E0325 21:13:02.925080 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0325 21:13:02.925168 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:13:02.925200 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:13:02.925229 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0325 21:13:02.949114 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:02.952746 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k6g6h" condition "Approved" to 2026-03-25 21:13:02.952726446 +0000 UTC m=+362.326272325 I0325 21:13:02.963743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k6g6h" condition "Ready" to 2026-03-25 21:13:02.963732092 +0000 UTC m=+362.337277971 I0325 21:13:02.984500 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:02.984475846 +0000 UTC m=+362.358021755 I0325 21:13:02.999809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:03.000186 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:03.000175443 +0000 UTC m=+362.373721362 I0325 21:13:03.013953 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:03.015681 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:07.925767 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:07.925752103 +0000 UTC m=+367.299298012 I0325 21:13:45.459635 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:45.459664 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-25 21:13:45.459657747 +0000 UTC m=+404.833203616 I0325 21:13:45.459670 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-25 21:13:45.459469563 +0000 UTC m=+404.833015462 I0325 21:13:45.465124 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:45.465151 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-25 21:13:45.465140524 +0000 UTC m=+404.838686423 I0325 21:13:45.465189 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-25 21:13:45.465184995 +0000 UTC m=+404.838730864 I0325 21:13:45.500302 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-25 21:13:45.500277298 +0000 UTC m=+404.873823157 I0325 21:13:45.501370 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:45.501471 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 21:13:45.501461143 +0000 UTC m=+404.875007012 I0325 21:13:45.508469 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:45.509477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:45.509540 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-25 21:13:45.509529746 +0000 UTC m=+404.883075615 I0325 21:13:45.510974 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:45.511091 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-25 21:13:45.511082679 +0000 UTC m=+404.884628548 I0325 21:13:45.550975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:45.551286 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:45.551351 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 21:13:45.551342952 +0000 UTC m=+404.924888821 I0325 21:13:45.791612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:45.866281 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-m7mcw" condition "Approved" to 2026-03-25 21:13:45.86626344 +0000 UTC m=+405.239809319 I0325 21:13:45.888714 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-m7mcw" condition "Ready" to 2026-03-25 21:13:45.888699311 +0000 UTC m=+405.262245190 I0325 21:13:45.923940 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:45.923922876 +0000 UTC m=+405.297468755 I0325 21:13:45.941787 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:45.942103 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:45.942095406 +0000 UTC m=+405.315641275 I0325 21:13:45.972018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:46.028503 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jl9xg" condition "Approved" to 2026-03-25 21:13:46.028490216 +0000 UTC m=+405.402036105 I0325 21:13:46.044851 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jl9xg" condition "Ready" to 2026-03-25 21:13:46.044838177 +0000 UTC m=+405.418384056 I0325 21:13:46.074778 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:46.074763038 +0000 UTC m=+405.448308937 I0325 21:13:46.094452 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" E0325 21:13:46.193614 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-66qlf\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0325 21:13:46.604121 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-hmvg9" condition "Approved" to 2026-03-25 21:13:46.604105922 +0000 UTC m=+405.977651801 I0325 21:13:46.761057 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-hmvg9" condition "Ready" to 2026-03-25 21:13:46.761038024 +0000 UTC m=+406.134583923 I0325 21:13:47.195326 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" resource_name="grafana-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="grafana-tls-hmvg9" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="grafana-tls-72zs6" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0325 21:13:47.350606 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-58zvs" condition "Approved" to 2026-03-25 21:13:47.350592408 +0000 UTC m=+406.724138277 E0325 21:13:47.394847 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-72zs6\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0325 21:13:47.512010 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-58zvs" condition "Ready" to 2026-03-25 21:13:47.511997507 +0000 UTC m=+406.885543386 I0325 21:13:47.946103 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:47.946085719 +0000 UTC m=+407.319631618 I0325 21:13:48.046914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:48.047452 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:48.047442901 +0000 UTC m=+407.420988800 I0325 21:13:48.298155 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:48.350910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:53.446688 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lk757-tls" condition "Ready" to 2026-03-25 21:13:53.446670231 +0000 UTC m=+412.820216130 I0325 21:13:53.446742 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lk757-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:53.446784 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lk757-tls" condition "Issuing" to 2026-03-25 21:13:53.446773473 +0000 UTC m=+412.820319352 I0325 21:13:53.461811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lk757-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lk757-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:53.461870 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lk757-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:53.461962 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-lk757-tls" condition "Issuing" to 2026-03-25 21:13:53.461954729 +0000 UTC m=+412.835500608 I0325 21:13:53.671439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lk757-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lk757-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:53.681480 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lk757-9jk25" condition "Approved" to 2026-03-25 21:13:53.681461732 +0000 UTC m=+413.055007611 I0325 21:13:53.711411 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-lk757-9jk25" condition "Ready" to 2026-03-25 21:13:53.711399344 +0000 UTC m=+413.084945223 I0325 21:13:53.749843 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lk757-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:53.749830758 +0000 UTC m=+413.123376627 I0325 21:13:53.768101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lk757-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lk757-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:53.768527 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-lk757-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:53.768514767 +0000 UTC m=+413.142060676 I0325 21:13:53.809303 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-lk757-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-lk757-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:14.470951 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:14.470996 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-25 21:14:14.470985425 +0000 UTC m=+433.844531324 I0325 21:14:14.471454 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 21:14:14.471446286 +0000 UTC m=+433.844992185 I0325 21:14:14.487560 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:14.487644 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 21:14:14.487634491 +0000 UTC m=+433.861180370 I0325 21:14:14.602610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:14.651933 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-j9sf8" condition "Approved" to 2026-03-25 21:14:14.651915991 +0000 UTC m=+434.025461870 I0325 21:14:14.669617 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-j9sf8" condition "Ready" to 2026-03-25 21:14:14.669593698 +0000 UTC m=+434.043139597 I0325 21:14:14.703956 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:14.703941813 +0000 UTC m=+434.077487692 I0325 21:14:14.722737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:24.633045 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-25 21:17:24.63299198 +0000 UTC m=+624.006537879 I0325 21:17:24.633252 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:24.633397 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 21:17:24.633384238 +0000 UTC m=+624.006930137 I0325 21:17:24.695540 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:17:24.695653 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:17:24.695682 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 21:17:24.695674949 +0000 UTC m=+624.069220808 I0325 21:17:25.072824 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-m2m8c" condition "Approved" to 2026-03-25 21:17:25.072813637 +0000 UTC m=+624.446359506 I0325 21:17:25.088481 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-m2m8c" condition "Ready" to 2026-03-25 21:17:25.088470739 +0000 UTC m=+624.462016598 I0325 21:17:25.114283 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:17:25.114270445 +0000 UTC m=+624.487816324 I0325 21:17:25.136028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:19:44.870880 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:19:44.871023 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-25 21:19:44.871002674 +0000 UTC m=+764.244548553 I0325 21:19:44.871894 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-25 21:19:44.871872332 +0000 UTC m=+764.245418241 I0325 21:19:44.888848 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:19:44.889060 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-25 21:19:44.889035719 +0000 UTC m=+764.262581628 I0325 21:19:44.982821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:19:45.009066 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-nph7w" condition "Approved" to 2026-03-25 21:19:45.009058311 +0000 UTC m=+764.382604180 I0325 21:19:45.034722 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-nph7w" condition "Ready" to 2026-03-25 21:19:45.034709269 +0000 UTC m=+764.408255148 I0325 21:19:45.058555 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:19:45.058540098 +0000 UTC m=+764.432085977 I0325 21:19:45.080013 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:19:45.080301 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:19:45.080292802 +0000 UTC m=+764.453838681 I0325 21:19:45.096106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:19:45.096367 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:19:45.096360865 +0000 UTC m=+764.469906724 I0325 21:20:45.376290 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:20:45.376353 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-25 21:20:45.376345666 +0000 UTC m=+824.749891545 I0325 21:20:45.376271 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 21:20:45.376248404 +0000 UTC m=+824.749794313 I0325 21:20:45.397133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:20:45.397394 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 21:20:45.397376585 +0000 UTC m=+824.770922504 I0325 21:20:45.634488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:20:45.669910 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-kwmng" condition "Approved" to 2026-03-25 21:20:45.669892173 +0000 UTC m=+825.043438072 I0325 21:20:45.693234 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-kwmng" condition "Ready" to 2026-03-25 21:20:45.693222011 +0000 UTC m=+825.066767890 I0325 21:20:45.723894 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:20:45.723882176 +0000 UTC m=+825.097428045 I0325 21:20:45.743666 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:20:45.760612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:43.373452 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-25 21:23:43.373392318 +0000 UTC m=+1002.746938217 I0325 21:23:43.373776 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:23:43.373887 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 21:23:43.373873568 +0000 UTC m=+1002.747419477 I0325 21:23:43.390289 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:43.390403 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:23:43.390450 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 21:23:43.3904238 +0000 UTC m=+1002.763969679 I0325 21:23:43.627006 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-dbjtq" condition "Approved" to 2026-03-25 21:23:43.626992676 +0000 UTC m=+1003.000538545 I0325 21:23:43.645865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-dbjtq" condition "Ready" to 2026-03-25 21:23:43.645849587 +0000 UTC m=+1003.019395466 I0325 21:23:43.673163 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:23:43.673149228 +0000 UTC m=+1003.046695107 I0325 21:23:43.695386 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:43.695824 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:23:43.695816549 +0000 UTC m=+1003.069362428 I0325 21:23:43.717686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:23:43.718250 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:23:43.718239466 +0000 UTC m=+1003.091785345