I0426 13:26:21.942691 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0426 13:26:21.942792 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0426 13:26:21.942864 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0426 13:26:21.947618 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0426 13:26:21.947998 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0426 13:26:21.948597 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0426 13:26:21.948637 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0426 13:26:21.953876 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0426 13:26:21.992311 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0426 13:26:21.998456 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0426 13:26:22.004636 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0426 13:26:22.008152 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0426 13:26:22.008913 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0426 13:26:22.014919 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0426 13:26:22.017770 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0426 13:26:22.019389 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0426 13:26:22.021032 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0426 13:26:22.021141 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0426 13:26:22.025841 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0426 13:26:22.027823 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0426 13:26:22.029540 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0426 13:26:22.031466 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0426 13:26:22.033079 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0426 13:26:22.033101 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0426 13:26:22.033110 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0426 13:26:22.033149 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0426 13:26:22.042290 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0426 13:26:22.045883 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0426 13:26:22.047461 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0426 13:26:22.049097 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0426 13:26:22.050773 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0426 13:26:22.052430 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0426 13:26:22.052882 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0426 13:26:22.056130 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.056148 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.056807 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.057030 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.087189 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.107494 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.122065 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.140666 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.157282 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:22.178840 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0426 13:26:35.072162 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-26 13:26:35.072133643 +0000 UTC m=+13.167916952 I0426 13:26:35.821012 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-26 13:26:35.820974808 +0000 UTC m=+13.916758127 I0426 13:26:35.821204 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:35.821304 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-26 13:26:35.821293857 +0000 UTC m=+13.917077166 I0426 13:26:35.835061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:35.835224 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:35.835290 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-26 13:26:35.835280309 +0000 UTC m=+13.931063628 E0426 13:26:35.838216 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0426 13:26:35.838513 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-26 13:26:35.838502657 +0000 UTC m=+13.934285996 E0426 13:26:35.838623 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0426 13:26:35.852663 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0426 13:26:35.852758 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0426 13:26:35.852825 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0426 13:26:35.852857 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0426 13:26:35.872304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5dd8d" condition "Approved" to 2026-04-26 13:26:35.872289967 +0000 UTC m=+13.968073306 I0426 13:26:35.883563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-5dd8d" condition "Ready" to 2026-04-26 13:26:35.883553877 +0000 UTC m=+13.979337186 I0426 13:26:35.911392 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:35.911377197 +0000 UTC m=+14.007160516 I0426 13:26:35.928433 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:35.938598 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:35.938586569 +0000 UTC m=+14.034369888 I0426 13:26:35.949483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:35.963003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:40.725365 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-26 13:26:40.72532982 +0000 UTC m=+18.821113129 I0426 13:26:40.725736 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:40.725752 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-26 13:26:40.725748535 +0000 UTC m=+18.821531844 I0426 13:26:40.752610 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-26 13:26:40.752599726 +0000 UTC m=+18.848383035 I0426 13:26:40.785753 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:40.785835 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:40.785860 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-26 13:26:40.785850879 +0000 UTC m=+18.881634198 I0426 13:26:40.852992 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:40.852979455 +0000 UTC m=+18.948762764 I0426 13:26:40.941968 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pxrnm" condition "Approved" to 2026-04-26 13:26:40.94195625 +0000 UTC m=+19.037739569 I0426 13:26:40.971117 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pxrnm" condition "Ready" to 2026-04-26 13:26:40.971102437 +0000 UTC m=+19.066885756 I0426 13:26:41.007043 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:41.007031139 +0000 UTC m=+19.102814458 I0426 13:26:41.030137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:44.902733 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-26 13:26:44.902714945 +0000 UTC m=+22.998498284 I0426 13:26:44.903193 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:44.903214 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-26 13:26:44.903208082 +0000 UTC m=+22.998991421 E0426 13:26:44.923941 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0426 13:26:44.924002 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-26 13:26:44.923995776 +0000 UTC m=+23.019779095 I0426 13:26:44.924056 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0426 13:26:44.927554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:44.927605 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:44.927618 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-26 13:26:44.927613391 +0000 UTC m=+23.023396710 E0426 13:26:44.933733 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0426 13:26:44.934036 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0426 13:26:44.934057 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0426 13:26:44.934082 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0426 13:26:44.953913 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-26 13:26:44.953900718 +0000 UTC m=+23.049684017 I0426 13:26:44.954214 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:44.954224 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-26 13:26:44.954221689 +0000 UTC m=+23.050004988 I0426 13:26:44.969168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:44.969245 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:26:44.969266 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-26 13:26:44.969260513 +0000 UTC m=+23.065043832 I0426 13:26:45.170295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-sn6h9" condition "Approved" to 2026-04-26 13:26:45.170284007 +0000 UTC m=+23.266067316 I0426 13:26:45.199791 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-sn6h9" condition "Ready" to 2026-04-26 13:26:45.199777279 +0000 UTC m=+23.295560598 I0426 13:26:45.219839 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-s692k" condition "Approved" to 2026-04-26 13:26:45.219826847 +0000 UTC m=+23.315610166 I0426 13:26:45.231186 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:45.231172788 +0000 UTC m=+23.326956107 I0426 13:26:45.253692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-s692k" condition "Ready" to 2026-04-26 13:26:45.253675603 +0000 UTC m=+23.349458952 I0426 13:26:45.261306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:45.261756 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:45.261748468 +0000 UTC m=+23.357531787 I0426 13:26:45.283491 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:49.935022 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:49.935008345 +0000 UTC m=+28.030791664 I0426 13:26:49.944889 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-s692k" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:49.944879531 +0000 UTC m=+28.040662850 I0426 13:26:49.978001 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:26:49.977984501 +0000 UTC m=+28.073767830 I0426 13:26:49.997616 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:26:50.056301 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:30:32.464270 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready" to 2026-04-26 13:30:32.464242912 +0000 UTC m=+250.560026231 I0426 13:30:32.464320 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-238.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:30:32.464353 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Issuing" to 2026-04-26 13:30:32.464343837 +0000 UTC m=+250.560127176 I0426 13:30:32.480489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:30:32.480556 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-238.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:30:32.480567 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Issuing" to 2026-04-26 13:30:32.480563339 +0000 UTC m=+250.576346648 I0426 13:30:32.858517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:30:32.866064 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-238.nip.io-tls-8jgkt" condition "Approved" to 2026-04-26 13:30:32.866053443 +0000 UTC m=+250.961836782 I0426 13:30:32.890877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-238.nip.io-tls-8jgkt" condition "Ready" to 2026-04-26 13:30:32.890868188 +0000 UTC m=+250.986651507 I0426 13:30:32.930649 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:30:32.930634171 +0000 UTC m=+251.026417520 I0426 13:30:32.957391 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:30:32.957589 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:30:32.95758394 +0000 UTC m=+251.053367249 I0426 13:30:32.975398 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:30:32.976907 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:32:55.329412 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:32:55.329371 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-26 13:32:55.329329849 +0000 UTC m=+393.425113168 I0426 13:32:55.329456 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-26 13:32:55.329446721 +0000 UTC m=+393.425230070 I0426 13:32:55.343416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:32:55.343485 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:32:55.343503 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-26 13:32:55.343496141 +0000 UTC m=+393.439279460 I0426 13:32:55.599306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:32:55.613247 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-r66xm" condition "Approved" to 2026-04-26 13:32:55.613231743 +0000 UTC m=+393.709015072 I0426 13:32:55.637716 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-r66xm" condition "Ready" to 2026-04-26 13:32:55.637707579 +0000 UTC m=+393.733490888 I0426 13:32:55.669010 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:32:55.669001769 +0000 UTC m=+393.764785078 I0426 13:32:55.688735 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:32:55.730239 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:33:41.699371 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-26 13:33:41.699337628 +0000 UTC m=+439.795120927 I0426 13:33:41.699590 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:33:41.699600 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-26 13:33:41.699597823 +0000 UTC m=+439.795381132 I0426 13:33:41.714336 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:33:41.714395 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:33:41.714410 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-26 13:33:41.714405776 +0000 UTC m=+439.810189085 I0426 13:33:42.016898 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:33:42.027651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-mn9tg" condition "Approved" to 2026-04-26 13:33:42.027639845 +0000 UTC m=+440.123423164 I0426 13:33:42.044330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-mn9tg" condition "Ready" to 2026-04-26 13:33:42.044321749 +0000 UTC m=+440.140105068 I0426 13:33:42.073058 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:33:42.073045671 +0000 UTC m=+440.168828990 I0426 13:33:42.090635 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:05.781912 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:05.781982 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-26 13:34:05.781944801 +0000 UTC m=+463.877728150 I0426 13:34:05.782249 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-26 13:34:05.781958071 +0000 UTC m=+463.877741390 E0426 13:34:05.797728 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0426 13:34:05.797761 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-26 13:34:05.797753486 +0000 UTC m=+463.893536805 E0426 13:34:05.797803 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0426 13:34:05.805144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:05.805223 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-26 13:34:05.805215743 +0000 UTC m=+463.900999052 E0426 13:34:05.810974 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0426 13:34:05.811630 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0426 13:34:05.811657 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0426 13:34:05.811744 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0426 13:34:05.823760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:05.845496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-pvf27" condition "Approved" to 2026-04-26 13:34:05.845485631 +0000 UTC m=+463.941268950 I0426 13:34:05.862445 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-pvf27" condition "Ready" to 2026-04-26 13:34:05.862436285 +0000 UTC m=+463.958219594 I0426 13:34:05.886515 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:05.886508477 +0000 UTC m=+463.982291786 I0426 13:34:05.898814 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:10.811645 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:10.81162984 +0000 UTC m=+468.907413179 I0426 13:34:49.829406 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:49.829460 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-26 13:34:49.829455059 +0000 UTC m=+507.925238368 I0426 13:34:49.829462 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-26 13:34:49.829449819 +0000 UTC m=+507.925233138 I0426 13:34:49.836163 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:49.836192 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-26 13:34:49.83618568 +0000 UTC m=+507.931968989 I0426 13:34:49.836400 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-26 13:34:49.836396616 +0000 UTC m=+507.932179925 I0426 13:34:49.878221 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-26 13:34:49.878206685 +0000 UTC m=+507.973989994 I0426 13:34:49.878321 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:49.878346 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-26 13:34:49.878340039 +0000 UTC m=+507.974123358 I0426 13:34:49.883975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:49.884047 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:49.884080 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-26 13:34:49.884073762 +0000 UTC m=+507.979857061 I0426 13:34:49.890005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:49.890142 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:49.890223 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-26 13:34:49.890162585 +0000 UTC m=+507.985945884 I0426 13:34:49.899008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:49.899170 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:49.899192 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-26 13:34:49.899187591 +0000 UTC m=+507.994970900 I0426 13:34:50.107250 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5kln9" condition "Approved" to 2026-04-26 13:34:50.107240244 +0000 UTC m=+508.203023553 I0426 13:34:50.119144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:50.120023 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-78ddq" condition "Approved" to 2026-04-26 13:34:50.120018678 +0000 UTC m=+508.215801977 I0426 13:34:50.122526 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5kln9" condition "Ready" to 2026-04-26 13:34:50.12252083 +0000 UTC m=+508.218304129 I0426 13:34:50.127388 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6kqz5" condition "Approved" to 2026-04-26 13:34:50.127383028 +0000 UTC m=+508.223166337 I0426 13:34:50.137848 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-78ddq" condition "Ready" to 2026-04-26 13:34:50.137836336 +0000 UTC m=+508.233619655 I0426 13:34:50.155982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6kqz5" condition "Ready" to 2026-04-26 13:34:50.155971674 +0000 UTC m=+508.251754983 I0426 13:34:50.374484 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:50.374471643 +0000 UTC m=+508.470254952 I0426 13:34:50.424866 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:50.42485382 +0000 UTC m=+508.520637129 I0426 13:34:50.531668 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:50.531655085 +0000 UTC m=+508.627438404 I0426 13:34:50.633115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:50.633377 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:50.633371095 +0000 UTC m=+508.729154404 I0426 13:34:50.722255 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:50.722543 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:50.722538317 +0000 UTC m=+508.818321626 I0426 13:34:50.823004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:50.823286 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:50.82327863 +0000 UTC m=+508.919061949 I0426 13:34:51.272157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:51.372460 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:51.423205 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:51.473120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:56.172083 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" condition "Ready" to 2026-04-26 13:34:56.172068278 +0000 UTC m=+514.267851577 I0426 13:34:56.172431 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:56.172442 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" condition "Issuing" to 2026-04-26 13:34:56.172439479 +0000 UTC m=+514.268222788 I0426 13:34:56.185600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:56.185672 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:34:56.185683 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" condition "Issuing" to 2026-04-26 13:34:56.185679623 +0000 UTC m=+514.281462932 I0426 13:34:56.330110 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:56.345348 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j5t7z-bnqwf" condition "Approved" to 2026-04-26 13:34:56.345337927 +0000 UTC m=+514.441121246 I0426 13:34:56.363988 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-j5t7z-bnqwf" condition "Ready" to 2026-04-26 13:34:56.363976399 +0000 UTC m=+514.459759718 I0426 13:34:56.390825 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:56.390814997 +0000 UTC m=+514.486598306 I0426 13:34:56.403404 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:34:56.403682 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:34:56.403675781 +0000 UTC m=+514.499459100 I0426 13:34:56.428969 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-j5t7z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:35:09.511272 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-26 13:35:09.511257972 +0000 UTC m=+527.607041281 I0426 13:35:09.511281 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0426 13:35:09.511646 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-26 13:35:09.511626103 +0000 UTC m=+527.607409412 I0426 13:35:09.531140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:35:09.531481 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-26 13:35:09.531415598 +0000 UTC m=+527.627198907 I0426 13:35:09.653741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:35:09.694946 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xzghv" condition "Approved" to 2026-04-26 13:35:09.694928724 +0000 UTC m=+527.790712043 I0426 13:35:09.721564 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xzghv" condition "Ready" to 2026-04-26 13:35:09.721550693 +0000 UTC m=+527.817334002 I0426 13:35:09.755483 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:35:09.755471643 +0000 UTC m=+527.851254962 I0426 13:35:09.772651 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0426 13:35:09.773288 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-26 13:35:09.773274819 +0000 UTC m=+527.869058168 I0426 13:35:09.789154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again"