I0331 18:28:28.882373 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 18:28:28.882531 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 18:28:28.882773 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 18:28:28.889350 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 18:28:28.889899 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 18:28:28.890032 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 18:28:28.890045 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 18:28:28.893913 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 18:28:28.908256 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 18:28:28.912534 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 18:28:28.915622 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 18:28:28.921695 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 18:28:28.921730 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 18:28:28.921801 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 18:28:28.924560 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 18:28:28.927061 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 18:28:28.929584 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 18:28:28.931608 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 18:28:28.933754 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 18:28:28.936471 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 18:28:28.941966 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 18:28:28.944575 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 18:28:28.946960 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 18:28:28.949370 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 18:28:28.949425 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 18:28:28.951800 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 18:28:28.954104 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 18:28:28.955947 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 18:28:28.957792 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 18:28:28.957815 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 18:28:28.957821 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 18:28:28.957874 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 18:28:28.963558 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 18:28:28.964591 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:28.966405 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:28.967239 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:28.985632 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:29.000634 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:29.020952 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:29.036682 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:29.052429 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:29.061072 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:29.068543 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 18:28:41.070214 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 18:28:41.070180971 +0000 UTC m=+12.220708003 I0331 18:28:41.770957 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:28:41.771006 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 18:28:41.770994395 +0000 UTC m=+12.921521457 I0331 18:28:41.771998 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 18:28:41.771989872 +0000 UTC m=+12.922516944 I0331 18:28:41.784574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:41.784625 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 18:28:41.784619099 +0000 UTC m=+12.935146141 E0331 18:28:41.784924 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:28:41.785020 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 18:28:41.78500966 +0000 UTC m=+12.935536702 E0331 18:28:41.785052 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:28:41.800112 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 18:28:41.800244 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:28:41.800308 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:28:41.800346 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 18:28:41.803131 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:41.825457 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-65lll" condition "Approved" to 2026-03-31 18:28:41.825434239 +0000 UTC m=+12.975961311 I0331 18:28:41.839993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-65lll" condition "Ready" to 2026-03-31 18:28:41.839969787 +0000 UTC m=+12.990496839 I0331 18:28:41.862965 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:28:41.8629301 +0000 UTC m=+13.013457142 I0331 18:28:41.884257 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:41.927265 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:28:46.801452 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:28:46.801432744 +0000 UTC m=+17.951959796 I0331 18:29:07.298886 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:29:07.298925 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 18:29:07.29891686 +0000 UTC m=+38.449443902 I0331 18:29:07.299141 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 18:29:07.299119906 +0000 UTC m=+38.449646958 I0331 18:29:07.308799 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 18:29:07.308784054 +0000 UTC m=+38.459311096 I0331 18:29:07.316690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:29:07.316783 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 18:29:07.316772737 +0000 UTC m=+38.467299769 I0331 18:29:07.474116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:29:07.508881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-sm2ms" condition "Approved" to 2026-03-31 18:29:07.508865864 +0000 UTC m=+38.659392906 I0331 18:29:07.539449 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-sm2ms" condition "Ready" to 2026-03-31 18:29:07.539431632 +0000 UTC m=+38.689958704 I0331 18:29:07.573098 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:29:07.57305355 +0000 UTC m=+38.723580612 I0331 18:29:07.590592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:29:07.590991 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:29:07.59097926 +0000 UTC m=+38.741506302 I0331 18:29:07.610500 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:50.863434 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 18:30:50.863383233 +0000 UTC m=+142.013910305 I0331 18:30:50.863484 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:30:50.863592 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 18:30:50.863578618 +0000 UTC m=+142.014105680 E0331 18:30:50.876414 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 18:30:50.876508 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 18:30:50.876500633 +0000 UTC m=+142.027027675 I0331 18:30:50.876526 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 18:30:50.883045 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:50.883133 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 18:30:50.88312431 +0000 UTC m=+142.033651382 E0331 18:30:50.889249 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 18:30:50.889720 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 18:30:50.889852 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 18:30:50.889940 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 18:30:50.892224 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:30:50.892234 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 18:30:50.892213512 +0000 UTC m=+142.042740554 I0331 18:30:50.892258 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 18:30:50.892249923 +0000 UTC m=+142.042776955 I0331 18:30:50.910457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:50.910510 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 18:30:50.910502461 +0000 UTC m=+142.061029503 I0331 18:30:50.974740 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:51.007317 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-cjrbt" condition "Approved" to 2026-03-31 18:30:51.007298294 +0000 UTC m=+142.157825366 I0331 18:30:51.038912 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-cjrbt" condition "Ready" to 2026-03-31 18:30:51.038893227 +0000 UTC m=+142.189420289 I0331 18:30:51.063932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:51.064491 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:51.06447208 +0000 UTC m=+142.214999122 I0331 18:30:51.089185 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:51.090370 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:51.090358812 +0000 UTC m=+142.240885854 I0331 18:30:51.098918 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:51.099365 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-c7v2t" condition "Approved" to 2026-03-31 18:30:51.099358932 +0000 UTC m=+142.249885974 I0331 18:30:51.106070 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:51.114054 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-c7v2t" condition "Ready" to 2026-03-31 18:30:51.114040824 +0000 UTC m=+142.264567896 I0331 18:30:55.890531 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:55.890517516 +0000 UTC m=+147.041044548 I0331 18:30:55.909629 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-c7v2t" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:55.909610596 +0000 UTC m=+147.060137658 I0331 18:30:55.940051 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:55.940026488 +0000 UTC m=+147.090553550 I0331 18:30:55.960248 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:55.960757 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:55.960743181 +0000 UTC m=+147.111270243 I0331 18:30:55.978815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:30:55.979204 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:30:55.979194124 +0000 UTC m=+147.129721196 I0331 18:33:22.776569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-67.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:33:22.776796 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-67.nip.io-tls" condition "Ready" to 2026-03-31 18:33:22.776757957 +0000 UTC m=+293.927285029 I0331 18:33:22.777273 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-67.nip.io-tls" condition "Issuing" to 2026-03-31 18:33:22.776620796 +0000 UTC m=+293.927147858 I0331 18:33:22.794814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-67.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-67.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:22.794905 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-67.nip.io-tls" condition "Ready" to 2026-03-31 18:33:22.79489442 +0000 UTC m=+293.945421482 I0331 18:33:22.920163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-67.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-67.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:22.954228 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-67.nip.io-tls-bzn79" condition "Approved" to 2026-03-31 18:33:22.954214354 +0000 UTC m=+294.104741396 I0331 18:33:22.973974 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-67.nip.io-tls-bzn79" condition "Ready" to 2026-03-31 18:33:22.973959087 +0000 UTC m=+294.124486129 I0331 18:33:23.002819 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-67.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:23.002805077 +0000 UTC m=+294.153332119 I0331 18:33:23.033247 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-67.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-67.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:23.033267 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-67.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-67.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:23.033640 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-67.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:23.033631699 +0000 UTC m=+294.184158741 I0331 18:33:23.048974 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-67.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-67.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:33:23.049594 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-67.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:33:23.049579999 +0000 UTC m=+294.200107081 I0331 18:34:32.579184 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 18:34:32.579123285 +0000 UTC m=+363.729650357 I0331 18:34:32.579662 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:34:32.579720 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 18:34:32.57970906 +0000 UTC m=+363.730236122 E0331 18:34:32.590496 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:34:32.590554 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 18:34:32.590548597 +0000 UTC m=+363.741075639 E0331 18:34:32.590574 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 18:34:32.593800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:34:32.593859 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:34:32.593955 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 18:34:32.593949847 +0000 UTC m=+363.744476889 E0331 18:34:32.605633 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 18:34:32.606009 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:34:32.606043 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 18:34:32.606097 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 18:34:32.631938 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-h97hj" condition "Approved" to 2026-03-31 18:34:32.631927071 +0000 UTC m=+363.782454103 I0331 18:34:32.632697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:34:32.642818 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-h97hj" condition "Ready" to 2026-03-31 18:34:32.642808519 +0000 UTC m=+363.793335561 I0331 18:34:32.674246 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:34:32.67423058 +0000 UTC m=+363.824757652 I0331 18:34:32.691770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:34:32.737322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:34:37.606437 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:34:37.606419124 +0000 UTC m=+368.756946146 I0331 18:35:15.233675 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 18:35:15.233652516 +0000 UTC m=+406.384179548 I0331 18:35:15.234023 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:15.234048 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 18:35:15.234044116 +0000 UTC m=+406.384571148 I0331 18:35:15.234518 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:15.234553 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 18:35:15.234546449 +0000 UTC m=+406.385073481 I0331 18:35:15.234793 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 18:35:15.234790086 +0000 UTC m=+406.385317118 I0331 18:35:15.237185 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 18:35:15.237174029 +0000 UTC m=+406.387701061 I0331 18:35:15.247522 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:15.247879 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 18:35:15.247609485 +0000 UTC m=+406.398136527 I0331 18:35:15.278382 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:15.278452 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 18:35:15.27844486 +0000 UTC m=+406.428971892 I0331 18:35:15.282109 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:15.282272 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:15.282304 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 18:35:15.282296472 +0000 UTC m=+406.432823514 I0331 18:35:15.289537 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:15.289598 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 18:35:15.289591335 +0000 UTC m=+406.440118367 I0331 18:35:15.372247 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:15.378180 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:15.402012 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fnpfk" condition "Approved" to 2026-03-31 18:35:15.401997517 +0000 UTC m=+406.552524579 I0331 18:35:15.416127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gbsr2" condition "Approved" to 2026-03-31 18:35:15.41611309 +0000 UTC m=+406.566640132 I0331 18:35:15.422415 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fnpfk" condition "Ready" to 2026-03-31 18:35:15.422406896 +0000 UTC m=+406.572933938 I0331 18:35:15.431551 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-gbsr2" condition "Ready" to 2026-03-31 18:35:15.431533528 +0000 UTC m=+406.582060590 I0331 18:35:15.449704 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:15.449690848 +0000 UTC m=+406.600217890 I0331 18:35:15.458578 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:15.458566843 +0000 UTC m=+406.609093905 I0331 18:35:15.469831 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:15.475841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:16.072298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:16.126964 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-q2t4p" condition "Approved" to 2026-03-31 18:35:16.126949945 +0000 UTC m=+407.277476977 I0331 18:35:16.223956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:16.329030 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-q2t4p" condition "Ready" to 2026-03-31 18:35:16.329019528 +0000 UTC m=+407.479546570 I0331 18:35:16.789457 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:16.789438912 +0000 UTC m=+407.939965984 I0331 18:35:16.870606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:16.871199 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:16.871187564 +0000 UTC m=+408.021714606 I0331 18:35:17.123388 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:17.174970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:23.317147 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-924tj-tls" condition "Ready" to 2026-03-31 18:35:23.317125874 +0000 UTC m=+414.467652936 I0331 18:35:23.317061 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-924tj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:23.317477 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-924tj-tls" condition "Issuing" to 2026-03-31 18:35:23.317462413 +0000 UTC m=+414.467989475 I0331 18:35:23.331883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-924tj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-924tj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:23.332086 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-924tj-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:23.332198 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-924tj-tls" condition "Issuing" to 2026-03-31 18:35:23.332190713 +0000 UTC m=+414.482717755 I0331 18:35:23.688212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-924tj-cmkq4" condition "Approved" to 2026-03-31 18:35:23.688191716 +0000 UTC m=+414.838718788 I0331 18:35:23.706341 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-924tj-cmkq4" condition "Ready" to 2026-03-31 18:35:23.706325175 +0000 UTC m=+414.856852237 I0331 18:35:23.732630 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-924tj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:23.732612941 +0000 UTC m=+414.883140003 I0331 18:35:23.749840 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-924tj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-924tj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:23.750174 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-924tj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:23.750164905 +0000 UTC m=+414.900691947 I0331 18:35:23.766702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-924tj-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-924tj-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:23.767146 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-924tj-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:23.767135073 +0000 UTC m=+414.917662135 I0331 18:35:46.798731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:46.798879 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 18:35:46.798802256 +0000 UTC m=+437.949329298 I0331 18:35:46.799357 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 18:35:46.798764525 +0000 UTC m=+437.949291587 I0331 18:35:46.811986 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:46.812178 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:35:46.812276 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 18:35:46.812265692 +0000 UTC m=+437.962792764 I0331 18:35:47.023209 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-pcw6q" condition "Approved" to 2026-03-31 18:35:47.023192809 +0000 UTC m=+438.173719871 I0331 18:35:47.038348 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-pcw6q" condition "Ready" to 2026-03-31 18:35:47.03833486 +0000 UTC m=+438.188861902 I0331 18:35:47.066149 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:35:47.066136745 +0000 UTC m=+438.216663787 I0331 18:35:47.089992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:35:47.134949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:16.424105 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:39:16.424148 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 18:39:16.424122701 +0000 UTC m=+647.574649743 I0331 18:39:16.424180 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 18:39:16.424173243 +0000 UTC m=+647.574700285 I0331 18:39:16.438772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:16.438932 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:39:16.438964 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 18:39:16.438955334 +0000 UTC m=+647.589482406 I0331 18:39:16.609748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:16.617992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-mvpjd" condition "Approved" to 2026-03-31 18:39:16.617983648 +0000 UTC m=+647.768510680 I0331 18:39:16.632976 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-mvpjd" condition "Ready" to 2026-03-31 18:39:16.632967565 +0000 UTC m=+647.783494587 I0331 18:39:16.657406 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:16.657386991 +0000 UTC m=+647.807914033 I0331 18:39:16.677083 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:16.678187 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:16.67818022 +0000 UTC m=+647.828707272 I0331 18:39:16.692180 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:16.696699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:39:16.697038 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:39:16.697029029 +0000 UTC m=+647.847556071 I0331 18:41:35.515443 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 18:41:35.51539947 +0000 UTC m=+786.665926542 I0331 18:41:35.515481 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:41:35.515697 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 18:41:35.515689548 +0000 UTC m=+786.666216600 I0331 18:41:35.533376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:35.533441 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 18:41:35.53343529 +0000 UTC m=+786.683962322 I0331 18:41:35.865780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:35.897673 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-2l4q2" condition "Approved" to 2026-03-31 18:41:35.897658247 +0000 UTC m=+787.048185289 I0331 18:41:35.915363 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-2l4q2" condition "Ready" to 2026-03-31 18:41:35.915353707 +0000 UTC m=+787.065880729 I0331 18:41:35.947688 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:35.947670777 +0000 UTC m=+787.098197819 I0331 18:41:35.968377 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:41:35.968754 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:41:35.968748168 +0000 UTC m=+787.119275210 I0331 18:41:35.990002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:41.584267 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:42:41.584342 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 18:42:41.584319606 +0000 UTC m=+852.734846648 I0331 18:42:41.584344 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 18:42:41.584313696 +0000 UTC m=+852.734840758 I0331 18:42:41.598193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:41.598271 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 18:42:41.598262287 +0000 UTC m=+852.748789339 I0331 18:42:41.740449 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:41.768516 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6c4l7" condition "Approved" to 2026-03-31 18:42:41.768499435 +0000 UTC m=+852.919026507 I0331 18:42:41.794280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6c4l7" condition "Ready" to 2026-03-31 18:42:41.79427146 +0000 UTC m=+852.944798492 I0331 18:42:41.817457 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:41.817442917 +0000 UTC m=+852.967969959 I0331 18:42:41.849230 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:42:41.849501 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:42:41.849493149 +0000 UTC m=+853.000020181 I0331 18:42:41.875111 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:45:43.850342 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:45:43.850400 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 18:45:43.850370708 +0000 UTC m=+1035.000897750 I0331 18:45:43.850461 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 18:45:43.850452661 +0000 UTC m=+1035.000979703 I0331 18:45:43.865527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:45:43.865597 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 18:45:43.865614 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 18:45:43.865609657 +0000 UTC m=+1035.016136699 I0331 18:45:43.961717 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:45:43.974397 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-pdggm" condition "Approved" to 2026-03-31 18:45:43.974381601 +0000 UTC m=+1035.124908643 I0331 18:45:43.994829 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-pdggm" condition "Ready" to 2026-03-31 18:45:43.994817166 +0000 UTC m=+1035.145344208 I0331 18:45:44.018848 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:45:44.018829203 +0000 UTC m=+1035.169356235 I0331 18:45:44.043418 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:45:44.043904 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:45:44.043895489 +0000 UTC m=+1035.194422531 I0331 18:45:44.062845 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 18:45:44.063086 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 18:45:44.063078451 +0000 UTC m=+1035.213605493