I0526 20:26:33.944237 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0526 20:26:33.944553 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0526 20:26:33.944710 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0526 20:26:33.949777 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0526 20:26:33.950907 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0526 20:26:33.951188 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0526 20:26:33.951259 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0526 20:26:33.956791 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0526 20:26:33.980330 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0526 20:26:33.985248 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0526 20:26:33.989397 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0526 20:26:33.991955 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0526 20:26:33.996847 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0526 20:26:33.999840 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0526 20:26:34.002287 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0526 20:26:34.002351 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0526 20:26:34.006940 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0526 20:26:34.011005 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0526 20:26:34.015097 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0526 20:26:34.017643 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0526 20:26:34.017799 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0526 20:26:34.024327 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0526 20:26:34.024445 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0526 20:26:34.029056 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0526 20:26:34.033219 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0526 20:26:34.034995 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0526 20:26:34.035019 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0526 20:26:34.035030 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0526 20:26:34.035146 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0526 20:26:34.037093 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0526 20:26:34.038855 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0526 20:26:34.040596 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0526 20:26:34.042872 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0526 20:26:34.045175 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.047718 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.047772 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.048367 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.050943 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.051456 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.051880 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.052110 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.052268 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:34.147968 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0526 20:26:55.870790 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-26 20:26:55.870777395 +0000 UTC m=+21.957659317 I0526 20:26:56.584948 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:26:56.585015 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-26 20:26:56.585007343 +0000 UTC m=+22.671889265 I0526 20:26:56.585446 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-26 20:26:56.585347311 +0000 UTC m=+22.672229243 E0526 20:26:56.599357 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0526 20:26:56.599454 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-26 20:26:56.599447031 +0000 UTC m=+22.686328963 E0526 20:26:56.599496 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0526 20:26:56.600677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:26:56.600803 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-26 20:26:56.600789872 +0000 UTC m=+22.687671804 E0526 20:26:56.618792 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0526 20:26:56.619398 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0526 20:26:56.619488 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0526 20:26:56.619626 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0526 20:26:56.624280 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:26:56.660270 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-xwcvv" condition "Approved" to 2026-05-26 20:26:56.660254032 +0000 UTC m=+22.747135994 I0526 20:26:56.806343 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-xwcvv" condition "Ready" to 2026-05-26 20:26:56.806332799 +0000 UTC m=+22.893214731 I0526 20:26:56.914853 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:26:56.914836503 +0000 UTC m=+23.001718465 I0526 20:26:56.981284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:27:01.619297 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:27:01.619283697 +0000 UTC m=+27.706165649 I0526 20:27:33.044172 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:27:33.044271 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-26 20:27:33.044260988 +0000 UTC m=+59.131142950 I0526 20:27:33.044207 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-26 20:27:33.044186447 +0000 UTC m=+59.131068389 I0526 20:27:33.096052 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-26 20:27:33.096033633 +0000 UTC m=+59.182915585 I0526 20:27:33.103436 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:27:33.103540 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-26 20:27:33.103531164 +0000 UTC m=+59.190413116 I0526 20:27:33.488701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:27:33.716497 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-xqsrg" condition "Approved" to 2026-05-26 20:27:33.716484083 +0000 UTC m=+59.803366015 I0526 20:27:33.917338 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-xqsrg" condition "Ready" to 2026-05-26 20:27:33.917321892 +0000 UTC m=+60.004203844 I0526 20:27:33.993155 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:27:33.993136504 +0000 UTC m=+60.080018476 I0526 20:27:34.062603 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:27:34.062942 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:27:34.062935389 +0000 UTC m=+60.149817321 I0526 20:27:34.106322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:27:34.110809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:29:55.461987 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:29:55.462063 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-26 20:29:55.462053857 +0000 UTC m=+201.548935809 I0526 20:29:55.462614 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-26 20:29:55.462589219 +0000 UTC m=+201.549471181 E0526 20:29:55.479076 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 20:29:55.479141 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-26 20:29:55.479134266 +0000 UTC m=+201.566016198 I0526 20:29:55.479184 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 20:29:55.481206 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:29:55.481411 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-26 20:29:55.481400577 +0000 UTC m=+201.568282529 E0526 20:29:55.493137 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0526 20:29:55.493239 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 20:29:55.493268 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0526 20:29:55.493306 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0526 20:29:55.495614 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:29:55.495640 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-26 20:29:55.495634121 +0000 UTC m=+201.582516043 I0526 20:29:55.495651 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-26 20:29:55.495638681 +0000 UTC m=+201.582520613 I0526 20:29:55.511115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:29:55.511192 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:29:55.511216 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-26 20:29:55.511209766 +0000 UTC m=+201.598091688 I0526 20:29:55.716636 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-74n72" condition "Approved" to 2026-05-26 20:29:55.716625188 +0000 UTC m=+201.803507120 I0526 20:29:55.735081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-74n72" condition "Ready" to 2026-05-26 20:29:55.735068878 +0000 UTC m=+201.821950840 I0526 20:29:55.816710 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:29:55.848311 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2rtkx" condition "Approved" to 2026-05-26 20:29:55.848292733 +0000 UTC m=+201.935174685 I0526 20:29:55.875442 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-2rtkx" condition "Ready" to 2026-05-26 20:29:55.87542634 +0000 UTC m=+201.962308302 I0526 20:29:55.900511 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:29:55.90050249 +0000 UTC m=+201.987384422 I0526 20:29:55.921883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:29:55.922401 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:29:55.922393449 +0000 UTC m=+202.009275401 I0526 20:29:55.934971 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:29:55.937340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:30:00.494383 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:30:00.494365081 +0000 UTC m=+206.581247033 I0526 20:30:00.511445 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-74n72" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:30:00.511424739 +0000 UTC m=+206.598306691 I0526 20:30:00.544380 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:30:00.544359727 +0000 UTC m=+206.631241679 I0526 20:30:00.572308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:30:00.572922 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:30:00.572910327 +0000 UTC m=+206.659792249 I0526 20:30:00.589071 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:30:00.589537 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:30:00.590031 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:30:00.590017536 +0000 UTC m=+206.676899488 I0526 20:33:12.141773 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Ready" to 2026-05-26 20:33:12.141732 +0000 UTC m=+398.228613962 I0526 20:33:12.141828 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-186.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:33:12.141875 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Issuing" to 2026-05-26 20:33:12.141863213 +0000 UTC m=+398.228745175 I0526 20:33:12.161489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:33:12.161576 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-186.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:33:12.161605 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Issuing" to 2026-05-26 20:33:12.161596632 +0000 UTC m=+398.248478594 I0526 20:33:12.382854 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:33:12.392631 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-186.nip.io-tls-8mkjd" condition "Approved" to 2026-05-26 20:33:12.392611578 +0000 UTC m=+398.479493530 I0526 20:33:12.412241 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-186.nip.io-tls-8mkjd" condition "Ready" to 2026-05-26 20:33:12.412224674 +0000 UTC m=+398.499106606 I0526 20:33:12.439186 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:33:12.439178158 +0000 UTC m=+398.526060110 I0526 20:33:12.458221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:33:12.458753 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-186.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:33:12.458745373 +0000 UTC m=+398.545627305 I0526 20:33:12.485470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-186.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-186.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:34:21.785826 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:34:21.785999 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-26 20:34:21.785986507 +0000 UTC m=+467.872868469 I0526 20:34:21.786084 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-26 20:34:21.786070909 +0000 UTC m=+467.872952871 E0526 20:34:21.798807 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0526 20:34:21.798855 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-26 20:34:21.79884727 +0000 UTC m=+467.885729202 E0526 20:34:21.798907 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0526 20:34:21.801136 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:34:21.801305 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:34:21.801363 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-26 20:34:21.801356577 +0000 UTC m=+467.888238509 E0526 20:34:21.810191 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0526 20:34:21.810433 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0526 20:34:21.810498 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0526 20:34:21.810583 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0526 20:34:21.839286 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:34:21.840617 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zxhlk" condition "Approved" to 2026-05-26 20:34:21.84060573 +0000 UTC m=+467.927487692 I0526 20:34:21.857989 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-zxhlk" condition "Ready" to 2026-05-26 20:34:21.857973486 +0000 UTC m=+467.944855438 I0526 20:34:21.881604 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:34:21.881582582 +0000 UTC m=+467.968464544 I0526 20:34:21.899974 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:34:21.900371 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:34:21.90036088 +0000 UTC m=+467.987242832 I0526 20:34:21.915113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:34:21.915391 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:34:21.915381781 +0000 UTC m=+468.002263713 I0526 20:34:26.810971 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:34:26.810962783 +0000 UTC m=+472.897844705 I0526 20:35:05.348147 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:05.348343 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-26 20:35:05.348331413 +0000 UTC m=+511.435213375 I0526 20:35:05.348566 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-26 20:35:05.348549298 +0000 UTC m=+511.435431220 I0526 20:35:05.354709 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-26 20:35:05.354698068 +0000 UTC m=+511.441579990 I0526 20:35:05.355028 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:05.355054 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-26 20:35:05.355049865 +0000 UTC m=+511.441931787 I0526 20:35:05.355172 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:05.356544 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-26 20:35:05.35653546 +0000 UTC m=+511.443417422 I0526 20:35:05.355240 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-26 20:35:05.3552351 +0000 UTC m=+511.442117022 I0526 20:35:05.377047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.377095 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-26 20:35:05.377089447 +0000 UTC m=+511.463971359 I0526 20:35:05.387236 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.387293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:05.387313 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-26 20:35:05.38730671 +0000 UTC m=+511.474188642 I0526 20:35:05.388607 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.388660 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:05.388738 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-26 20:35:05.388674271 +0000 UTC m=+511.475556203 I0526 20:35:05.551214 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.588304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-86q98" condition "Approved" to 2026-05-26 20:35:05.588278122 +0000 UTC m=+511.675160074 I0526 20:35:05.609587 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-86q98" condition "Ready" to 2026-05-26 20:35:05.609575497 +0000 UTC m=+511.696457419 I0526 20:35:05.667421 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:05.667559 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-26 20:35:05.667547016 +0000 UTC m=+511.754429008 I0526 20:35:05.675985 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:05.675970778 +0000 UTC m=+511.762852720 I0526 20:35:05.699027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.704515 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.704880 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:05.704870175 +0000 UTC m=+511.791752137 I0526 20:35:05.708404 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:05.723708 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hv67q" condition "Approved" to 2026-05-26 20:35:05.723697174 +0000 UTC m=+511.810579096 I0526 20:35:05.728430 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bbgxp" condition "Approved" to 2026-05-26 20:35:05.72841976 +0000 UTC m=+511.815301682 I0526 20:35:05.732119 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:05.732110955 +0000 UTC m=+511.818992877 I0526 20:35:05.740158 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-hv67q" condition "Ready" to 2026-05-26 20:35:05.740147038 +0000 UTC m=+511.827028960 I0526 20:35:05.749079 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bbgxp" condition "Ready" to 2026-05-26 20:35:05.749071121 +0000 UTC m=+511.835953043 I0526 20:35:05.792402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:06.526239 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:06.526227303 +0000 UTC m=+512.613109225 I0526 20:35:06.794888 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:06.846410 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:06.903674 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-587cz" condition "Approved" to 2026-05-26 20:35:06.903653852 +0000 UTC m=+512.990535814 I0526 20:35:07.228224 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-587cz" condition "Ready" to 2026-05-26 20:35:07.228208726 +0000 UTC m=+513.315090688 I0526 20:35:07.510222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:07.795698 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:08.000961 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:08.000948089 +0000 UTC m=+514.087830041 I0526 20:35:08.095916 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:08.096287 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:08.096278228 +0000 UTC m=+514.183160160 I0526 20:35:08.145694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:08.346201 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:16.569425 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" condition "Ready" to 2026-05-26 20:35:16.569412781 +0000 UTC m=+522.656294703 I0526 20:35:16.569573 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:35:16.569613 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" condition "Issuing" to 2026-05-26 20:35:16.569605825 +0000 UTC m=+522.656487757 I0526 20:35:16.583820 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7jmml-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:16.584174 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" condition "Ready" to 2026-05-26 20:35:16.584162446 +0000 UTC m=+522.671044398 I0526 20:35:16.792215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7jmml-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:16.817564 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-7jmml-cvcd5" condition "Approved" to 2026-05-26 20:35:16.817552297 +0000 UTC m=+522.904434229 I0526 20:35:16.909042 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-7jmml-cvcd5" condition "Ready" to 2026-05-26 20:35:16.909028738 +0000 UTC m=+522.995910690 I0526 20:35:16.946977 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:35:16.946967732 +0000 UTC m=+523.033849664 I0526 20:35:16.963559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7jmml-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:35:17.012251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-7jmml-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-7jmml-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:36:18.846336 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-26 20:36:18.846313976 +0000 UTC m=+584.933195948 I0526 20:36:18.846409 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:36:18.846439 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-26 20:36:18.846431409 +0000 UTC m=+584.933313371 I0526 20:36:18.921731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:36:18.921868 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:36:18.921893 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-26 20:36:18.921886562 +0000 UTC m=+585.008768494 I0526 20:36:19.152449 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:36:19.163431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-cbcgb" condition "Approved" to 2026-05-26 20:36:19.163419086 +0000 UTC m=+585.250301008 I0526 20:36:19.210639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-cbcgb" condition "Ready" to 2026-05-26 20:36:19.210624558 +0000 UTC m=+585.297506470 I0526 20:36:19.245204 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:36:19.245174942 +0000 UTC m=+585.332056874 I0526 20:36:19.269902 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:36:19.270370 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:36:19.270358854 +0000 UTC m=+585.357240796 I0526 20:36:19.273151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:36:19.298998 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:39:47.131419 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:39:47.131461 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-26 20:39:47.131451989 +0000 UTC m=+793.218333911 I0526 20:39:47.131384 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-26 20:39:47.131345747 +0000 UTC m=+793.218227689 I0526 20:39:47.174690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:39:47.174784 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-26 20:39:47.17477419 +0000 UTC m=+793.261656142 I0526 20:39:47.301067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:39:47.346614 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hh6bv" condition "Approved" to 2026-05-26 20:39:47.346603157 +0000 UTC m=+793.433485089 I0526 20:39:47.412000 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-hh6bv" condition "Ready" to 2026-05-26 20:39:47.411988196 +0000 UTC m=+793.498870118 I0526 20:39:47.462732 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:39:47.462712174 +0000 UTC m=+793.549594126 I0526 20:39:47.495673 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:39:47.496128 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:39:47.49611973 +0000 UTC m=+793.583001662 I0526 20:39:47.542465 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" E0526 20:41:30.109724 1 leaderelection.go:332] error retrieving resource lock cert-manager/cert-manager-controller: etcdserver: request timed out I0526 20:43:50.720203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:43:50.720253 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-26 20:43:50.7202467 +0000 UTC m=+1036.807128632 I0526 20:43:50.720385 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-26 20:43:50.720363602 +0000 UTC m=+1036.807245554 I0526 20:43:50.736605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:43:50.736677 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:43:50.736696 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-26 20:43:50.736689031 +0000 UTC m=+1036.823570963 I0526 20:43:50.912658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:43:50.924295 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-d6zcm" condition "Approved" to 2026-05-26 20:43:50.92428175 +0000 UTC m=+1037.011163682 I0526 20:43:50.942430 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-d6zcm" condition "Ready" to 2026-05-26 20:43:50.942410911 +0000 UTC m=+1037.029292873 I0526 20:43:50.969740 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:43:50.96972826 +0000 UTC m=+1037.056610192 I0526 20:43:50.991955 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:43:51.040673 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:45:29.494700 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-26 20:45:29.494682551 +0000 UTC m=+1135.581564503 I0526 20:45:29.495149 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:45:29.495224 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-26 20:45:29.495213703 +0000 UTC m=+1135.582095655 I0526 20:45:29.519483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:45:29.519566 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-26 20:45:29.519559835 +0000 UTC m=+1135.606441757 I0526 20:45:29.730865 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:45:29.835762 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-qlj5r" condition "Approved" to 2026-05-26 20:45:29.835750586 +0000 UTC m=+1135.922632518 I0526 20:45:29.855215 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-qlj5r" condition "Ready" to 2026-05-26 20:45:29.855201316 +0000 UTC m=+1135.942083278 I0526 20:45:29.980608 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:45:29.980597335 +0000 UTC m=+1136.067479267 I0526 20:45:30.075501 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:45:30.075810 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:45:30.075804151 +0000 UTC m=+1136.162686083 I0526 20:45:30.145584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:48:42.429373 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-26 20:48:42.42935341 +0000 UTC m=+1328.516235432 I0526 20:48:42.429394 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 20:48:42.429811 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-26 20:48:42.42979944 +0000 UTC m=+1328.516681392 I0526 20:48:42.449120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:48:42.449227 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-26 20:48:42.449219517 +0000 UTC m=+1328.536101439 I0526 20:48:42.616621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:48:42.645547 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-j2lhq" condition "Approved" to 2026-05-26 20:48:42.645535587 +0000 UTC m=+1328.732417519 I0526 20:48:42.661633 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-j2lhq" condition "Ready" to 2026-05-26 20:48:42.66162404 +0000 UTC m=+1328.748505972 I0526 20:48:42.690199 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:48:42.690183733 +0000 UTC m=+1328.777065685 I0526 20:48:42.716402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:48:42.716855 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:48:42.716846944 +0000 UTC m=+1328.803728886 I0526 20:48:42.733518 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 20:48:42.733932 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 20:48:42.733922568 +0000 UTC m=+1328.820804530 I0526 21:00:48.131462 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-26 21:00:48.131441669 +0000 UTC m=+2054.218323651 I0526 21:00:48.131560 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:00:48.131656 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-26 21:00:48.131646754 +0000 UTC m=+2054.218528716 I0526 21:00:48.148076 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:00:48.148229 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:00:48.148258 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-26 21:00:48.148249072 +0000 UTC m=+2054.235131024 I0526 21:00:48.493762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:00:48.508895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-fn5z8" condition "Approved" to 2026-05-26 21:00:48.508871535 +0000 UTC m=+2054.595753467 I0526 21:00:48.534212 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-fn5z8" condition "Ready" to 2026-05-26 21:00:48.534201287 +0000 UTC m=+2054.621083209 I0526 21:00:48.582612 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:00:48.582597752 +0000 UTC m=+2054.669479684 I0526 21:00:48.620979 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:00:48.621297 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:00:48.62129195 +0000 UTC m=+2054.708173872 I0526 21:00:48.674829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:00:48.675167 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:02:33.963106 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-26 21:02:33.963085972 +0000 UTC m=+2160.049967944 I0526 21:02:33.963435 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:02:33.963499 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-26 21:02:33.963491871 +0000 UTC m=+2160.050373803 I0526 21:02:34.179101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:02:34.179163 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-26 21:02:34.179154814 +0000 UTC m=+2160.266036736 I0526 21:02:34.490346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:02:35.312447 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-7xpl4" condition "Approved" to 2026-05-26 21:02:35.3124324 +0000 UTC m=+2161.399314352 I0526 21:02:35.499498 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-7xpl4" condition "Ready" to 2026-05-26 21:02:35.499483332 +0000 UTC m=+2161.586365294 I0526 21:02:36.702729 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:02:36.702719925 +0000 UTC m=+2162.789601847 I0526 21:02:37.419510 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:04.740882 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-05-26 21:04:04.740862553 +0000 UTC m=+2250.827744485 I0526 21:04:04.740988 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:04:04.741061 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-05-26 21:04:04.741041327 +0000 UTC m=+2250.827923289 I0526 21:04:04.851018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:04.851200 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:04:04.851255 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-05-26 21:04:04.851246617 +0000 UTC m=+2250.938128549 I0526 21:04:04.931344 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:04.939402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-9c46m" condition "Approved" to 2026-05-26 21:04:04.939387252 +0000 UTC m=+2251.026269184 I0526 21:04:04.978639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-9c46m" condition "Ready" to 2026-05-26 21:04:04.978627202 +0000 UTC m=+2251.065509124 I0526 21:04:05.035166 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:04:05.035152588 +0000 UTC m=+2251.122034530 I0526 21:04:05.087720 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.088069 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:04:05.088059974 +0000 UTC m=+2251.174941916 I0526 21:04:05.142883 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.444283 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:04:05.444328 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-05-26 21:04:05.444318177 +0000 UTC m=+2251.531200119 I0526 21:04:05.444794 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-26 21:04:05.444786758 +0000 UTC m=+2251.531668700 I0526 21:04:05.475887 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.475998 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-26 21:04:05.475987897 +0000 UTC m=+2251.562869859 I0526 21:04:05.496635 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.496737 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-26 21:04:05.496726152 +0000 UTC m=+2251.583608104 I0526 21:04:05.498242 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-gpg5g" condition "Approved" to 2026-05-26 21:04:05.498225985 +0000 UTC m=+2251.585107927 I0526 21:04:05.513412 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-gpg5g" condition "Ready" to 2026-05-26 21:04:05.513400556 +0000 UTC m=+2251.600282488 I0526 21:04:05.515389 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-05-26 21:04:05.515376239 +0000 UTC m=+2251.602258191 I0526 21:04:05.537588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.552152 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:04:05.552139044 +0000 UTC m=+2251.639020976 I0526 21:04:05.572914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.573223 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:04:05.573215316 +0000 UTC m=+2251.660097238 I0526 21:04:05.588631 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:05.588917 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:04:05.588909558 +0000 UTC m=+2251.675791490 I0526 21:04:06.182059 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-05-26 21:04:06.182045099 +0000 UTC m=+2252.268927051 I0526 21:04:06.855373 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-05-26 21:04:06.855357928 +0000 UTC m=+2252.942239880 I0526 21:04:52.131154 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:04:52.131190 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-05-26 21:04:52.13118322 +0000 UTC m=+2298.218065162 I0526 21:04:52.131692 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-05-26 21:04:52.131686641 +0000 UTC m=+2298.218568573 I0526 21:04:52.156937 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:52.157038 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-05-26 21:04:52.157031369 +0000 UTC m=+2298.243913301 I0526 21:04:53.378346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:53.430783 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-4jgdb" condition "Approved" to 2026-05-26 21:04:53.430762193 +0000 UTC m=+2299.517644155 I0526 21:04:53.456357 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-4jgdb" condition "Ready" to 2026-05-26 21:04:53.456342126 +0000 UTC m=+2299.543224048 I0526 21:04:53.493953 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:04:53.493938198 +0000 UTC m=+2299.580820150 I0526 21:04:53.902628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:04:54.018822 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:07:59.119908 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:07:59.119939 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-05-26 21:07:59.119933317 +0000 UTC m=+2485.206815239 I0526 21:07:59.120223 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-05-26 21:07:59.120202803 +0000 UTC m=+2485.207084765 I0526 21:07:59.135980 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:07:59.136144 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:07:59.136174 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-05-26 21:07:59.136164971 +0000 UTC m=+2485.223046923 I0526 21:07:59.374760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:07:59.387048 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-z4dhs" condition "Approved" to 2026-05-26 21:07:59.387032023 +0000 UTC m=+2485.473913955 I0526 21:07:59.414388 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-z4dhs" condition "Ready" to 2026-05-26 21:07:59.414365926 +0000 UTC m=+2485.501247858 I0526 21:07:59.456222 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:07:59.456203373 +0000 UTC m=+2485.543085295 I0526 21:07:59.508294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:07:59.508682 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:07:59.508675079 +0000 UTC m=+2485.595557011 I0526 21:07:59.515364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:07:59.531384 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:07:59.531752 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:07:59.531743786 +0000 UTC m=+2485.618625718 I0526 21:08:00.694168 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-05-26 21:08:00.694154315 +0000 UTC m=+2486.781036247 I0526 21:08:00.694653 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:08:00.694688 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-05-26 21:08:00.694680166 +0000 UTC m=+2486.781562098 I0526 21:08:00.709170 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:08:00.709344 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:08:00.709370 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-05-26 21:08:00.709362895 +0000 UTC m=+2486.796244827 I0526 21:08:00.865865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-gkkkx" condition "Approved" to 2026-05-26 21:08:00.865850572 +0000 UTC m=+2486.952732504 I0526 21:08:00.897323 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-gkkkx" condition "Ready" to 2026-05-26 21:08:00.897304427 +0000 UTC m=+2486.984186399 I0526 21:08:00.940342 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:08:00.940323281 +0000 UTC m=+2487.027205243 I0526 21:08:00.969024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:08:00.969527 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:08:00.969521035 +0000 UTC m=+2487.056402967 I0526 21:08:00.991799 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:08:00.993676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:34.774921 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-05-26 21:11:34.774909454 +0000 UTC m=+2700.861791376 I0526 21:11:34.775304 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:11:34.775382 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-05-26 21:11:34.775372144 +0000 UTC m=+2700.862254096 I0526 21:11:34.792231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:34.792338 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:11:34.792399 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-05-26 21:11:34.792390858 +0000 UTC m=+2700.879272820 I0526 21:11:34.984073 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-72pj7" condition "Approved" to 2026-05-26 21:11:34.984059638 +0000 UTC m=+2701.070941600 I0526 21:11:35.006727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-72pj7" condition "Ready" to 2026-05-26 21:11:35.00671774 +0000 UTC m=+2701.093599662 I0526 21:11:35.037720 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:35.03770715 +0000 UTC m=+2701.124589082 I0526 21:11:35.061203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:35.061504 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:35.061499088 +0000 UTC m=+2701.148381020 I0526 21:11:35.078540 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:35.086819 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:35.087282 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:35.08727129 +0000 UTC m=+2701.174153252 I0526 21:11:38.349683 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-libvirt-default-9pvv4-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:11:38.349717 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-9pvv4-vnc" condition "Issuing" to 2026-05-26 21:11:38.349709109 +0000 UTC m=+2704.436591041 I0526 21:11:38.350019 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-9pvv4-vnc" condition "Ready" to 2026-05-26 21:11:38.350009535 +0000 UTC m=+2704.436891487 I0526 21:11:38.352603 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-9pvv4-api" condition "Ready" to 2026-05-26 21:11:38.352591284 +0000 UTC m=+2704.439473246 I0526 21:11:38.353089 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/libvirt-libvirt-default-9pvv4-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:11:38.353152 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-9pvv4-api" condition "Issuing" to 2026-05-26 21:11:38.353143986 +0000 UTC m=+2704.440025948 I0526 21:11:38.366259 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-libvirt-default-9pvv4-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.366350 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-9pvv4-vnc" condition "Ready" to 2026-05-26 21:11:38.366342784 +0000 UTC m=+2704.453224726 I0526 21:11:38.368120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-libvirt-default-9pvv4-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-api\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.368224 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-9pvv4-api" condition "Ready" to 2026-05-26 21:11:38.368216336 +0000 UTC m=+2704.455098258 I0526 21:11:38.549154 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-libvirt-default-9pvv4-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.586079 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-9pvv4-vnc-k8mtl" condition "Approved" to 2026-05-26 21:11:38.586066098 +0000 UTC m=+2704.672948030 I0526 21:11:38.605064 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-9pvv4-vnc-k8mtl" condition "Ready" to 2026-05-26 21:11:38.605049387 +0000 UTC m=+2704.691931349 I0526 21:11:38.635237 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-9pvv4-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:38.635216539 +0000 UTC m=+2704.722098471 I0526 21:11:38.656259 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-libvirt-default-9pvv4-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.656686 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-9pvv4-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:38.656678213 +0000 UTC m=+2704.743560145 I0526 21:11:38.674152 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-libvirt-default-9pvv4-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.742278 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-libvirt-default-9pvv4-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-api\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.772720 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-9pvv4-api-f78xg" condition "Approved" to 2026-05-26 21:11:38.772709355 +0000 UTC m=+2704.859591287 I0526 21:11:38.789877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-9pvv4-api-f78xg" condition "Ready" to 2026-05-26 21:11:38.789863803 +0000 UTC m=+2704.876745735 I0526 21:11:38.819311 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-9pvv4-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:38.819298307 +0000 UTC m=+2704.906180239 I0526 21:11:38.849329 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-libvirt-default-9pvv4-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-api\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.849681 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-9pvv4-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:38.849675074 +0000 UTC m=+2704.936557006 I0526 21:11:38.869474 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/libvirt-libvirt-default-9pvv4-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-api\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:11:38.869994 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-9pvv4-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:11:38.869982432 +0000 UTC m=+2704.956864384 I0526 21:11:38.872772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/libvirt-libvirt-default-9pvv4-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-9pvv4-api\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:16.512195 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-05-26 21:16:16.51218096 +0000 UTC m=+2982.599062922 I0526 21:16:16.512363 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:16:16.512451 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-05-26 21:16:16.512441686 +0000 UTC m=+2982.599323648 I0526 21:16:16.553212 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:16.553294 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:16:16.553311 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-05-26 21:16:16.55330504 +0000 UTC m=+2982.640186962 I0526 21:16:16.924541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:16.956037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-wf47z" condition "Approved" to 2026-05-26 21:16:16.956016307 +0000 UTC m=+2983.042898259 I0526 21:16:16.978496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-wf47z" condition "Ready" to 2026-05-26 21:16:16.978486344 +0000 UTC m=+2983.065368276 I0526 21:16:17.020332 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:16:17.020312809 +0000 UTC m=+2983.107194741 I0526 21:16:17.123351 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:17.123762 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:16:17.123756336 +0000 UTC m=+2983.210638268 I0526 21:16:17.158032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:18.215366 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:16:18.215405 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-05-26 21:16:18.215396361 +0000 UTC m=+2984.302278293 I0526 21:16:18.215497 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-05-26 21:16:18.215489333 +0000 UTC m=+2984.302371285 I0526 21:16:18.233407 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:18.233555 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-05-26 21:16:18.23354505 +0000 UTC m=+2984.320427012 I0526 21:16:18.470591 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:18.516296 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-mz75p" condition "Approved" to 2026-05-26 21:16:18.516283418 +0000 UTC m=+2984.603165360 I0526 21:16:18.538371 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-mz75p" condition "Ready" to 2026-05-26 21:16:18.538361847 +0000 UTC m=+2984.625243769 I0526 21:16:18.571941 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:16:18.571773702 +0000 UTC m=+2984.658655664 I0526 21:16:18.598215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:18.598627 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:16:18.598617449 +0000 UTC m=+2984.685499381 I0526 21:16:18.617677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:16:18.618045 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:16:18.618036087 +0000 UTC m=+2984.704918019 I0526 21:19:18.617963 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-05-26 21:19:18.617951684 +0000 UTC m=+3164.704833626 I0526 21:19:18.618491 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:19:18.618516 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-05-26 21:19:18.618511917 +0000 UTC m=+3164.705393849 E0526 21:19:18.636240 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 21:19:18.636303 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-05-26 21:19:18.636295567 +0000 UTC m=+3164.723177489 I0526 21:19:18.636323 1 sync.go:62] "Error initializing issuer: secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 21:19:18.637983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:18.638085 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:19:18.638109 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-05-26 21:19:18.638102457 +0000 UTC m=+3164.724984379 E0526 21:19:18.645878 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-client" E0526 21:19:18.645959 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 21:19:18.645989 1 sync.go:62] "Error initializing issuer: secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0526 21:19:18.646035 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-client-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-client" I0526 21:19:18.722563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-84rz7" condition "Approved" to 2026-05-26 21:19:18.722544867 +0000 UTC m=+3164.809426819 I0526 21:19:18.742687 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-84rz7" condition "Ready" to 2026-05-26 21:19:18.742673089 +0000 UTC m=+3164.829555041 I0526 21:19:18.772750 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:18.772738646 +0000 UTC m=+3164.859620568 I0526 21:19:18.817944 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:18.818303 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:18.818297001 +0000 UTC m=+3164.905178923 I0526 21:19:18.854763 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:18.869441 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:19.338275 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:19:19.338313 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-05-26 21:19:19.338304969 +0000 UTC m=+3165.425186891 I0526 21:19:19.339053 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-26 21:19:19.339047686 +0000 UTC m=+3165.425929608 E0526 21:19:19.356085 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 21:19:19.356126 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-05-26 21:19:19.356119379 +0000 UTC m=+3165.443001311 I0526 21:19:19.356168 1 sync.go:62] "Error initializing issuer: secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 21:19:19.357512 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:19.357572 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-05-26 21:19:19.357566433 +0000 UTC m=+3165.444448355 E0526 21:19:19.372823 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-server" E0526 21:19:19.372933 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0526 21:19:19.372963 1 sync.go:62] "Error initializing issuer: secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0526 21:19:19.372995 1 controller.go:167] "re-queuing item due to error processing" err="secret \"octavia-server-ca\" not found" logger="cert-manager.issuers" key="openstack/octavia-server" I0526 21:19:19.392229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:19.422224 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-s657s" condition "Approved" to 2026-05-26 21:19:19.422209487 +0000 UTC m=+3165.509091439 I0526 21:19:19.484384 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-s657s" condition "Ready" to 2026-05-26 21:19:19.484373925 +0000 UTC m=+3165.571255857 I0526 21:19:19.517718 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:19.517705095 +0000 UTC m=+3165.604587017 I0526 21:19:19.540153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:19.540409 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:19.540401555 +0000 UTC m=+3165.627283487 I0526 21:19:19.561388 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:20.094272 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:19:20.094305 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-05-26 21:19:20.094297266 +0000 UTC m=+3166.181179198 I0526 21:19:20.094598 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-05-26 21:19:20.094592333 +0000 UTC m=+3166.181474265 I0526 21:19:20.136546 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:20.136628 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:19:20.136655 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-05-26 21:19:20.136647428 +0000 UTC m=+3166.223529360 I0526 21:19:20.191297 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-pjf8n" condition "Approved" to 2026-05-26 21:19:20.191282427 +0000 UTC m=+3166.278164399 I0526 21:19:20.203055 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:20.207282 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-pjf8n" condition "Ready" to 2026-05-26 21:19:20.207267317 +0000 UTC m=+3166.294149259 I0526 21:19:23.646693 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:23.64668149 +0000 UTC m=+3169.733563442 I0526 21:19:23.686284 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-pjf8n" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:23.686273701 +0000 UTC m=+3169.773155643 I0526 21:19:23.715491 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:23.715474307 +0000 UTC m=+3169.802356249 I0526 21:19:23.733783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:23.734014 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:23.734007915 +0000 UTC m=+3169.820889837 I0526 21:19:23.748559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:19:24.381456 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:19:24.381447409 +0000 UTC m=+3170.468329331 I0526 21:22:26.458960 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:22:26.459038 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-26 21:22:26.459028757 +0000 UTC m=+3352.545910699 I0526 21:22:26.459011 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-05-26 21:22:26.458994406 +0000 UTC m=+3352.545876358 I0526 21:22:26.476452 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:22:26.476627 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:22:26.476676 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-05-26 21:22:26.476647973 +0000 UTC m=+3352.563529895 I0526 21:22:27.125306 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-x7l6q" condition "Approved" to 2026-05-26 21:22:27.125289666 +0000 UTC m=+3353.212171588 I0526 21:22:27.147625 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-x7l6q" condition "Ready" to 2026-05-26 21:22:27.147610468 +0000 UTC m=+3353.234492420 I0526 21:22:27.177913 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:22:27.177899159 +0000 UTC m=+3353.264781091 I0526 21:22:27.204861 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:22:27.205122 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:22:27.205117331 +0000 UTC m=+3353.291999243 I0526 21:22:27.223511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:22:27.223855 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:22:27.223846433 +0000 UTC m=+3353.310728365 I0526 21:23:14.607038 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-05-26 21:23:14.607001351 +0000 UTC m=+3400.693883323 I0526 21:23:14.744287 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-26 21:23:14.74427061 +0000 UTC m=+3400.831152572 I0526 21:23:14.744911 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:14.744954 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-05-26 21:23:14.744945154 +0000 UTC m=+3400.831827136 I0526 21:23:14.808084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:14.808342 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-05-26 21:23:14.808330401 +0000 UTC m=+3400.895212393 E0526 21:23:14.868173 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.issuers" E0526 21:23:14.904287 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.certificates-key-manager" key="cert-manager-test/selfsigned-cert" I0526 21:23:15.053516 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-05-26 21:23:15.053497466 +0000 UTC m=+3401.140379418 I0526 21:23:15.102530 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:15.102573 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-05-26 21:23:15.10256507 +0000 UTC m=+3401.189447002 I0526 21:23:15.102577 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-26 21:23:15.10255097 +0000 UTC m=+3401.189432922 I0526 21:23:15.130402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:15.130582 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-05-26 21:23:15.13056771 +0000 UTC m=+3401.217449672 I0526 21:23:15.341484 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:15.374609 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-xm2nv" condition "Approved" to 2026-05-26 21:23:15.374592359 +0000 UTC m=+3401.461474301 I0526 21:23:15.401404 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-xm2nv" condition "Ready" to 2026-05-26 21:23:15.401388632 +0000 UTC m=+3401.488270594 I0526 21:23:15.442210 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:15.44219912 +0000 UTC m=+3401.529081052 I0526 21:23:15.474911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:15.475304 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:15.475299355 +0000 UTC m=+3401.562181277 I0526 21:23:15.496805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:15.894875 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-05-26 21:23:15.894859003 +0000 UTC m=+3401.981740935 I0526 21:23:15.923531 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-26 21:23:15.923516698 +0000 UTC m=+3402.010398630 I0526 21:23:15.924009 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:15.924071 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-05-26 21:23:15.92406442 +0000 UTC m=+3402.010946362 I0526 21:23:15.957297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:15.957452 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-05-26 21:23:15.957443881 +0000 UTC m=+3402.044325813 I0526 21:23:16.087473 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:16.129300 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-6nlhg" condition "Approved" to 2026-05-26 21:23:16.129288127 +0000 UTC m=+3402.216170049 I0526 21:23:16.148684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-6nlhg" condition "Ready" to 2026-05-26 21:23:16.148672383 +0000 UTC m=+3402.235554315 I0526 21:23:16.187965 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:16.187951797 +0000 UTC m=+3402.274833729 I0526 21:23:16.216973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:16.654347 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-05-26 21:23:16.654332658 +0000 UTC m=+3402.741214600 I0526 21:23:16.681765 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-05-26 21:23:16.681747425 +0000 UTC m=+3402.768629377 I0526 21:23:16.682004 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:16.682044 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-26 21:23:16.682035512 +0000 UTC m=+3402.768917444 I0526 21:23:16.705374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:16.705455 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:16.705475 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-05-26 21:23:16.705470358 +0000 UTC m=+3402.792352280 I0526 21:23:17.044691 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:17.058431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-dlsl9" condition "Approved" to 2026-05-26 21:23:17.058421929 +0000 UTC m=+3403.145303861 I0526 21:23:17.084276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-dlsl9" condition "Ready" to 2026-05-26 21:23:17.084264931 +0000 UTC m=+3403.171146853 I0526 21:23:17.132672 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:17.132655709 +0000 UTC m=+3403.219537641 I0526 21:23:17.173959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:17.174297 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:17.174289516 +0000 UTC m=+3403.261171448 I0526 21:23:17.197782 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:17.197987 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:17.198332 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:17.198326486 +0000 UTC m=+3403.285208408 I0526 21:23:17.205372 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-05-26 21:23:17.205365954 +0000 UTC m=+3403.292247866 I0526 21:23:17.230261 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:17.230303 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-26 21:23:17.230295856 +0000 UTC m=+3403.317177778 I0526 21:23:17.230314 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-05-26 21:23:17.230292816 +0000 UTC m=+3403.317174728 I0526 21:23:17.261551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:17.261631 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:23:17.261653 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-05-26 21:23:17.26164644 +0000 UTC m=+3403.348528372 I0526 21:23:18.045417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-9lhkr" condition "Approved" to 2026-05-26 21:23:18.045403592 +0000 UTC m=+3404.132285524 I0526 21:23:18.084620 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-9lhkr" condition "Ready" to 2026-05-26 21:23:18.084607064 +0000 UTC m=+3404.171488986 I0526 21:23:18.148140 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:18.148125672 +0000 UTC m=+3404.235007594 I0526 21:23:18.173720 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:23:18.175077 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:23:18.175067289 +0000 UTC m=+3404.261949221 I0526 21:23:18.241556 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:07.058938 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-05-26 21:27:07.058925703 +0000 UTC m=+3633.145807645 I0526 21:27:07.059077 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:27:07.059114 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-26 21:27:07.059106037 +0000 UTC m=+3633.145987969 I0526 21:27:07.079192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:07.079251 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:27:07.079263 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-05-26 21:27:07.07925764 +0000 UTC m=+3633.166139562 I0526 21:27:07.432206 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-8ntcm" condition "Approved" to 2026-05-26 21:27:07.43219386 +0000 UTC m=+3633.519075792 I0526 21:27:07.450490 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-8ntcm" condition "Ready" to 2026-05-26 21:27:07.450477671 +0000 UTC m=+3633.537359623 I0526 21:27:07.483493 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:27:07.483484914 +0000 UTC m=+3633.570366856 I0526 21:27:07.512038 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:07.563057 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:11.474282 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-05-26 21:27:11.474271101 +0000 UTC m=+3637.561153023 I0526 21:27:11.475480 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:27:11.475500 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-05-26 21:27:11.475496509 +0000 UTC m=+3637.562378441 I0526 21:27:11.500139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:11.500273 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0526 21:27:11.500291 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-05-26 21:27:11.500285297 +0000 UTC m=+3637.587167219 I0526 21:27:11.635020 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-wgsq4" condition "Approved" to 2026-05-26 21:27:11.635003197 +0000 UTC m=+3637.721885129 I0526 21:27:11.661749 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-wgsq4" condition "Ready" to 2026-05-26 21:27:11.661737668 +0000 UTC m=+3637.748619600 I0526 21:27:11.686994 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:27:11.686981376 +0000 UTC m=+3637.773863308 I0526 21:27:11.722125 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:11.722352 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:27:11.722345972 +0000 UTC m=+3637.809227894 I0526 21:27:11.737952 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0526 21:27:11.738239 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-26 21:27:11.738229728 +0000 UTC m=+3637.825111660 E0526 21:31:56.167194 1 leaderelection.go:332] error retrieving resource lock cert-manager/cert-manager-controller: Get "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:04.144165 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.PartialObjectMetadata ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144267 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.Challenge ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144319 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.Certificate ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144366 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.Issuer ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144406 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.PartialObjectMetadata ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144442 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.Ingress ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144484 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.Secret ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144521 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.Order ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144560 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.ClusterIssuer ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding W0526 21:32:04.144599 1 reflector.go:462] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: watch of *v1.CertificateRequest ended with: an error on the server ("unable to decode an event from the watch stream: http2: client connection lost") has prevented the request from succeeding I0526 21:32:06.167415 1 leaderelection.go:285] failed to renew lease cert-manager/cert-manager-controller: timed out waiting for the condition W0526 21:32:34.991592 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.Certificate: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificates?resourceVersion=28440": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:34.991886 1 trace.go:236] Trace[310723173]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:04.989) (total time: 30001ms): Trace[310723173]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificates?resourceVersion=28440": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:34.991) Trace[310723173]: [30.001706879s] [30.001706879s] END E0526 21:32:34.991939 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.Certificate: failed to list *v1.Certificate: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificates?resourceVersion=28440": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.000300 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/pods?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=28486": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.000399 1 trace.go:236] Trace[530430225]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:04.999) (total time: 30001ms): Trace[530430225]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/pods?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=28486": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.000) Trace[530430225]: [30.001258388s] [30.001258388s] END E0526 21:32:35.000430 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.PartialObjectMetadata: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/pods?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=28486": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.124607 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.CertificateRequest: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificaterequests?resourceVersion=28469": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.124744 1 trace.go:236] Trace[1206888785]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.123) (total time: 30001ms): Trace[1206888785]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificaterequests?resourceVersion=28469": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.124) Trace[1206888785]: [30.001305888s] [30.001305888s] END E0526 21:32:35.124777 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.CertificateRequest: failed to list *v1.CertificateRequest: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/certificaterequests?resourceVersion=28469": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.255820 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.Issuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/issuers?resourceVersion=28478": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.255912 1 trace.go:236] Trace[591334112]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.254) (total time: 30001ms): Trace[591334112]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/issuers?resourceVersion=28478": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.255) Trace[591334112]: [30.001174086s] [30.001174086s] END E0526 21:32:35.255948 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.Issuer: failed to list *v1.Issuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/issuers?resourceVersion=28478": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.317089 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/services?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=28465": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.317158 1 trace.go:236] Trace[1910791882]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.316) (total time: 30001ms): Trace[1910791882]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/services?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=28465": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.317) Trace[1910791882]: [30.001094725s] [30.001094725s] END E0526 21:32:35.317177 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.PartialObjectMetadata: failed to list *v1.PartialObjectMetadata: Get "https://10.96.0.1:443/api/v1/services?labelSelector=acme.cert-manager.io%2Fhttp-domain&resourceVersion=28465": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.413700 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.Challenge: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/challenges?resourceVersion=28460": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.414035 1 trace.go:236] Trace[880306499]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.412) (total time: 30001ms): Trace[880306499]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/challenges?resourceVersion=28460": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.413) Trace[880306499]: [30.001449201s] [30.001449201s] END E0526 21:32:35.414207 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.Challenge: failed to list *v1.Challenge: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/challenges?resourceVersion=28460": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.586315 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.Ingress: Get "https://10.96.0.1:443/apis/networking.k8s.io/v1/ingresses?resourceVersion=28442": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.586403 1 trace.go:236] Trace[1260753971]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.584) (total time: 30001ms): Trace[1260753971]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/networking.k8s.io/v1/ingresses?resourceVersion=28442": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.586) Trace[1260753971]: [30.001455933s] [30.001455933s] END E0526 21:32:35.586425 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.Ingress: failed to list *v1.Ingress: Get "https://10.96.0.1:443/apis/networking.k8s.io/v1/ingresses?resourceVersion=28442": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.604630 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.Secret: Get "https://10.96.0.1:443/api/v1/secrets?resourceVersion=28439": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.604693 1 trace.go:236] Trace[366354835]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.603) (total time: 30001ms): Trace[366354835]: ---"Objects listed" error:Get "https://10.96.0.1:443/api/v1/secrets?resourceVersion=28439": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.604) Trace[366354835]: [30.001496402s] [30.001496402s] END E0526 21:32:35.604712 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.Secret: failed to list *v1.Secret: Get "https://10.96.0.1:443/api/v1/secrets?resourceVersion=28439": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.678795 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.ClusterIssuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/clusterissuers?resourceVersion=28478": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.678884 1 trace.go:236] Trace[1981000585]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.677) (total time: 30001ms): Trace[1981000585]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/cert-manager.io/v1/clusterissuers?resourceVersion=28478": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.678) Trace[1981000585]: [30.001372081s] [30.001372081s] END E0526 21:32:35.678909 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.ClusterIssuer: failed to list *v1.ClusterIssuer: Get "https://10.96.0.1:443/apis/cert-manager.io/v1/clusterissuers?resourceVersion=28478": dial tcp 10.96.0.1:443: i/o timeout W0526 21:32:35.741041 1 reflector.go:539] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: failed to list *v1.Order: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/orders?resourceVersion=28492": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:35.741123 1 trace.go:236] Trace[1885640630]: "Reflector ListAndWatch" name:k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 (26-May-2026 21:32:05.739) (total time: 30001ms): Trace[1885640630]: ---"Objects listed" error:Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/orders?resourceVersion=28492": dial tcp 10.96.0.1:443: i/o timeout 30001ms (21:32:35.740) Trace[1885640630]: [30.001304178s] [30.001304178s] END E0526 21:32:35.741145 1 reflector.go:147] k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229: Failed to watch *v1.Order: failed to list *v1.Order: Get "https://10.96.0.1:443/apis/acme.cert-manager.io/v1/orders?resourceVersion=28492": dial tcp 10.96.0.1:443: i/o timeout E0526 21:32:36.168828 1 leaderelection.go:308] Failed to release lock: Put "https://10.96.0.1:443/apis/coordination.k8s.io/v1/namespaces/cert-manager/leases/cert-manager-controller": dial tcp 10.96.0.1:443: i/o timeout I0526 21:32:36.169002 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-vault" I0526 21:32:36.169029 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-ca" I0526 21:32:36.169028 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-request-manager" I0526 21:32:36.169095 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-acme" I0526 21:32:36.169114 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.clusterissuers" I0526 21:32:36.169115 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.orders" I0526 21:32:36.169127 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-readiness" I0526 21:32:36.169128 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.issuers" I0526 21:32:36.169140 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-approver" I0526 21:32:36.169138 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-issuing" I0526 21:32:36.169151 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-revision-manager" I0526 21:32:36.169162 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-metrics" I0526 21:32:36.169175 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.ingress-shim" I0526 21:32:36.169210 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.challenges" I0526 21:32:36.169218 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-selfsigned" I0526 21:32:36.169244 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-key-manager" I0526 21:32:36.169350 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificates-trigger" I0526 21:32:36.169348 1 controller.go:127] "shutting down queue as workqueue signaled shutdown" logger="cert-manager.certificaterequests-issuer-venafi" E0526 21:32:36.169794 1 main.go:35] "error executing command" err="error starting controller: leader election lost" logger="cert-manager"