I0511 07:28:07.060778 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0511 07:28:07.060859 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0511 07:28:07.060920 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0511 07:28:07.066389 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0511 07:28:07.066853 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0511 07:28:07.066942 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0511 07:28:07.066949 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0511 07:28:07.069732 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0511 07:28:07.084174 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0511 07:28:07.088353 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0511 07:28:07.092047 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0511 07:28:07.095933 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0511 07:28:07.095962 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0511 07:28:07.095973 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0511 07:28:07.096090 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0511 07:28:07.098845 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0511 07:28:07.101038 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0511 07:28:07.102635 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0511 07:28:07.102688 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0511 07:28:07.104428 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0511 07:28:07.104475 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0511 07:28:07.106276 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0511 07:28:07.111109 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0511 07:28:07.113423 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0511 07:28:07.113501 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0511 07:28:07.115494 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0511 07:28:07.117172 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0511 07:28:07.119049 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0511 07:28:07.120716 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0511 07:28:07.123694 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0511 07:28:07.125621 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0511 07:28:07.127331 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0511 07:28:07.133845 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0511 07:28:07.135917 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.136504 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.138226 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.138685 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.151650 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.164619 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.183991 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.202452 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.213477 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:07.228556 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0511 07:28:23.953990 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-11 07:28:23.953974317 +0000 UTC m=+16.922880726 I0511 07:28:24.672845 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:28:24.672878 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-11 07:28:24.67287181 +0000 UTC m=+17.641778219 I0511 07:28:24.673638 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-11 07:28:24.673633213 +0000 UTC m=+17.642539622 E0511 07:28:24.690294 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0511 07:28:24.690356 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-11 07:28:24.690349319 +0000 UTC m=+17.659255728 E0511 07:28:24.690379 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0511 07:28:24.692420 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:24.692464 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-11 07:28:24.692459546 +0000 UTC m=+17.661365945 E0511 07:28:24.704103 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0511 07:28:24.704726 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0511 07:28:24.704763 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0511 07:28:24.704785 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0511 07:28:24.717255 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:24.741749 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8ngs7" condition "Approved" to 2026-05-11 07:28:24.741738501 +0000 UTC m=+17.710644930 I0511 07:28:24.755733 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8ngs7" condition "Ready" to 2026-05-11 07:28:24.755723641 +0000 UTC m=+17.724630050 I0511 07:28:24.796684 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:24.796668064 +0000 UTC m=+17.765574483 I0511 07:28:24.819754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:24.820520 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:24.820507382 +0000 UTC m=+17.789413811 I0511 07:28:24.847405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:24.852334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:29.705359 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:29.705350748 +0000 UTC m=+22.674257147 I0511 07:28:29.709775 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:28:29.709810 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-11 07:28:29.709802233 +0000 UTC m=+22.678708642 I0511 07:28:29.709892 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-11 07:28:29.709882414 +0000 UTC m=+22.678788813 I0511 07:28:29.729922 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-11 07:28:29.729911139 +0000 UTC m=+22.698817538 I0511 07:28:29.748521 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:29.748605 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:28:29.748626 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-11 07:28:29.748619202 +0000 UTC m=+22.717525611 I0511 07:28:30.082547 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:30.091192 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-q4llp" condition "Approved" to 2026-05-11 07:28:30.091184215 +0000 UTC m=+23.060090614 I0511 07:28:30.131447 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-q4llp" condition "Ready" to 2026-05-11 07:28:30.131437794 +0000 UTC m=+23.100344183 I0511 07:28:30.156895 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:30.156887656 +0000 UTC m=+23.125794055 I0511 07:28:30.180182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:30.238779 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:33.837647 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:28:33.837696 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-11 07:28:33.837674677 +0000 UTC m=+26.806581086 I0511 07:28:33.837832 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-11 07:28:33.837803869 +0000 UTC m=+26.806710268 E0511 07:28:33.848224 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0511 07:28:33.848346 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-11 07:28:33.848337401 +0000 UTC m=+26.817243810 I0511 07:28:33.848409 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0511 07:28:33.855557 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:33.855874 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-11 07:28:33.855863325 +0000 UTC m=+26.824769764 E0511 07:28:33.868121 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0511 07:28:33.869649 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0511 07:28:33.869710 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0511 07:28:33.869805 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0511 07:28:33.871596 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-11 07:28:33.871584382 +0000 UTC m=+26.840490791 I0511 07:28:33.871617 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:28:33.871750 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-11 07:28:33.871743104 +0000 UTC m=+26.840649503 I0511 07:28:33.887668 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:33.887783 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-11 07:28:33.887774276 +0000 UTC m=+26.856680685 I0511 07:28:33.949911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:33.957615 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:33.984066 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-jf2vd" condition "Approved" to 2026-05-11 07:28:33.984050971 +0000 UTC m=+26.952957390 I0511 07:28:33.994572 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-h6bt5" condition "Approved" to 2026-05-11 07:28:33.994561463 +0000 UTC m=+26.963467862 I0511 07:28:34.014680 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-h6bt5" condition "Ready" to 2026-05-11 07:28:34.014658231 +0000 UTC m=+26.983564630 I0511 07:28:34.017185 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-jf2vd" condition "Ready" to 2026-05-11 07:28:34.017171902 +0000 UTC m=+26.986078311 I0511 07:28:34.062830 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:34.062815486 +0000 UTC m=+27.031721895 I0511 07:28:34.086244 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:34.086783 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:34.086774915 +0000 UTC m=+27.055681324 I0511 07:28:34.107127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:38.869463 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:38.869453501 +0000 UTC m=+31.838359910 I0511 07:28:38.884547 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-h6bt5" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:38.884536992 +0000 UTC m=+31.853443401 I0511 07:28:38.920764 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:38.92074243 +0000 UTC m=+31.889648829 I0511 07:28:38.971146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:28:38.971397 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:28:38.971391099 +0000 UTC m=+31.940297498 I0511 07:28:39.016753 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:32:49.883940 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready" to 2026-05-11 07:32:49.883913709 +0000 UTC m=+282.852820118 I0511 07:32:49.884140 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-49.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:32:49.884191 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Issuing" to 2026-05-11 07:32:49.884179706 +0000 UTC m=+282.853086145 I0511 07:32:49.905695 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:32:49.905803 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-49.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:32:49.905829 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Issuing" to 2026-05-11 07:32:49.905821228 +0000 UTC m=+282.874727637 I0511 07:32:50.331782 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-49.nip.io-tls-7rqh5" condition "Approved" to 2026-05-11 07:32:50.331771412 +0000 UTC m=+283.300677801 I0511 07:32:50.350895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-49.nip.io-tls-7rqh5" condition "Ready" to 2026-05-11 07:32:50.350881531 +0000 UTC m=+283.319787960 I0511 07:32:50.373680 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:32:50.373664823 +0000 UTC m=+283.342571232 I0511 07:32:50.393129 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:32:50.394212 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:32:50.394201201 +0000 UTC m=+283.363107640 I0511 07:32:50.419223 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-49.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-49.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:32:50.419671 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-49.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:32:50.41966306 +0000 UTC m=+283.388569469 I0511 07:35:03.598027 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:35:03.598165 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-11 07:35:03.598126299 +0000 UTC m=+416.567032718 I0511 07:35:03.598159 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-11 07:35:03.59814068 +0000 UTC m=+416.567047089 I0511 07:35:03.611733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:03.611803 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-11 07:35:03.611795632 +0000 UTC m=+416.580702031 I0511 07:35:03.859926 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:03.884721 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vqh8r" condition "Approved" to 2026-05-11 07:35:03.884709734 +0000 UTC m=+416.853616143 I0511 07:35:03.903497 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-vqh8r" condition "Ready" to 2026-05-11 07:35:03.903486578 +0000 UTC m=+416.872392997 I0511 07:35:03.927366 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:35:03.927352984 +0000 UTC m=+416.896259403 I0511 07:35:03.955748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:03.956070 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:35:03.956064137 +0000 UTC m=+416.924970536 I0511 07:35:03.957336 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:03.971023 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:03.971285 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:35:03.97127786 +0000 UTC m=+416.940184269 I0511 07:35:50.213568 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-11 07:35:50.213540318 +0000 UTC m=+463.182446727 I0511 07:35:50.213604 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:35:50.213639 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-11 07:35:50.213632919 +0000 UTC m=+463.182539318 I0511 07:35:50.237575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:50.237673 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:35:50.237746 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-11 07:35:50.237738317 +0000 UTC m=+463.206644726 I0511 07:35:50.730284 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-dmtmt" condition "Approved" to 2026-05-11 07:35:50.730273927 +0000 UTC m=+463.699180326 I0511 07:35:50.751216 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-dmtmt" condition "Ready" to 2026-05-11 07:35:50.751200475 +0000 UTC m=+463.720106914 I0511 07:35:50.781560 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:35:50.781547428 +0000 UTC m=+463.750453867 I0511 07:35:50.800911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:35:50.801273 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:35:50.801266204 +0000 UTC m=+463.770172603 I0511 07:35:50.824005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:36:15.808601 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:36:15.808657 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-11 07:36:15.808637987 +0000 UTC m=+488.777544406 I0511 07:36:15.809242 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-11 07:36:15.809233257 +0000 UTC m=+488.778139676 E0511 07:36:15.822637 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0511 07:36:15.822892 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-11 07:36:15.822880773 +0000 UTC m=+488.791787172 E0511 07:36:15.823000 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0511 07:36:15.830323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:36:15.830400 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-11 07:36:15.830393669 +0000 UTC m=+488.799300068 E0511 07:36:15.867056 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0511 07:36:15.867153 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0511 07:36:15.867178 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0511 07:36:15.867231 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0511 07:36:15.867365 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:36:15.867422 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-11 07:36:15.867416175 +0000 UTC m=+488.836322574 I0511 07:36:15.955774 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-sgfhg" condition "Approved" to 2026-05-11 07:36:15.955759815 +0000 UTC m=+488.924666214 I0511 07:36:15.956283 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-11 07:36:15.956271405 +0000 UTC m=+488.925177794 I0511 07:36:15.983270 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:36:15.987528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-sgfhg" condition "Ready" to 2026-05-11 07:36:15.987517308 +0000 UTC m=+488.956423717 I0511 07:36:16.015340 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:36:16.015333928 +0000 UTC m=+488.984240327 I0511 07:36:16.029169 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:36:20.867813 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:36:20.867796536 +0000 UTC m=+493.836702965 I0511 07:37:05.419044 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:05.419111 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-11 07:37:05.419099693 +0000 UTC m=+538.388006092 I0511 07:37:05.419561 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-11 07:37:05.419555791 +0000 UTC m=+538.388462190 I0511 07:37:05.439584 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-11 07:37:05.439562776 +0000 UTC m=+538.408469165 I0511 07:37:05.439920 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-11 07:37:05.439904171 +0000 UTC m=+538.408810570 I0511 07:37:05.439979 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:05.440006 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-11 07:37:05.440003333 +0000 UTC m=+538.408909732 I0511 07:37:05.443033 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:05.443284 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-11 07:37:05.443275689 +0000 UTC m=+538.412182088 I0511 07:37:05.463242 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:05.463684 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-11 07:37:05.463671379 +0000 UTC m=+538.432577798 I0511 07:37:05.479339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:05.479391 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:05.479406 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-11 07:37:05.47940111 +0000 UTC m=+538.448307509 I0511 07:37:05.489775 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:05.489872 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:05.489906 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-11 07:37:05.48989806 +0000 UTC m=+538.458804449 I0511 07:37:05.838030 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-7vhg4" condition "Approved" to 2026-05-11 07:37:05.83801692 +0000 UTC m=+538.806923319 I0511 07:37:05.858602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-7vhg4" condition "Ready" to 2026-05-11 07:37:05.858591183 +0000 UTC m=+538.827497582 I0511 07:37:05.892718 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:05.892706579 +0000 UTC m=+538.861612978 I0511 07:37:05.903343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:05.915015 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gv4sq" condition "Approved" to 2026-05-11 07:37:05.915004122 +0000 UTC m=+538.883910521 I0511 07:37:05.921169 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:05.937825 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-gv4sq" condition "Ready" to 2026-05-11 07:37:05.937815373 +0000 UTC m=+538.906721782 I0511 07:37:05.981146 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:05.981133068 +0000 UTC m=+538.950039467 I0511 07:37:06.030425 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:06.034865 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:06.0348574 +0000 UTC m=+539.003763799 I0511 07:37:06.048040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:06.048320 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:06.149487 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:06.150057 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:06.150047507 +0000 UTC m=+539.118953916 E0511 07:37:06.295344 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-hpg9x\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0511 07:37:06.549527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2jqdl" condition "Approved" to 2026-05-11 07:37:06.549509864 +0000 UTC m=+539.518416273 I0511 07:37:06.756677 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2jqdl" condition "Ready" to 2026-05-11 07:37:06.75666244 +0000 UTC m=+539.725568849 E0511 07:37:07.045468 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-46sjc\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0511 07:37:07.438255 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" resource_name="alertmanager-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="alertmanager-tls-2jqdl" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="alertmanager-tls-zsrv7" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0511 07:37:07.463159 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7kbhd" condition "Approved" to 2026-05-11 07:37:07.463137441 +0000 UTC m=+540.432043850 I0511 07:37:07.609302 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7kbhd" condition "Ready" to 2026-05-11 07:37:07.609280457 +0000 UTC m=+540.578186886 I0511 07:37:08.051085 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:08.051069435 +0000 UTC m=+541.019975854 I0511 07:37:08.149134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:08.149711 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:08.149700335 +0000 UTC m=+541.118606774 I0511 07:37:08.348014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:12.440453 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:12.440509 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" condition "Issuing" to 2026-05-11 07:37:12.440504162 +0000 UTC m=+545.409410561 I0511 07:37:12.440896 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" condition "Ready" to 2026-05-11 07:37:12.440891908 +0000 UTC m=+545.409798307 I0511 07:37:12.460292 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:12.460494 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" condition "Ready" to 2026-05-11 07:37:12.460481633 +0000 UTC m=+545.429388032 I0511 07:37:12.547074 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:12.590604 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kfwc8-7gvdz" condition "Approved" to 2026-05-11 07:37:12.590589706 +0000 UTC m=+545.559496095 I0511 07:37:12.620256 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-kfwc8-7gvdz" condition "Ready" to 2026-05-11 07:37:12.620247163 +0000 UTC m=+545.589153562 I0511 07:37:12.656337 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:12.656318569 +0000 UTC m=+545.625224978 I0511 07:37:12.678103 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-kfwc8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:24.174900 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-11 07:37:24.174862868 +0000 UTC m=+557.143769277 I0511 07:37:24.174948 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:24.174977 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-11 07:37:24.17497167 +0000 UTC m=+557.143878079 I0511 07:37:24.213207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:24.213292 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0511 07:37:24.213315 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-11 07:37:24.213305698 +0000 UTC m=+557.182212097 I0511 07:37:24.378830 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:24.384038 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-z9k52" condition "Approved" to 2026-05-11 07:37:24.3840155 +0000 UTC m=+557.352921909 I0511 07:37:24.403261 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-z9k52" condition "Ready" to 2026-05-11 07:37:24.403247436 +0000 UTC m=+557.372153825 I0511 07:37:24.437202 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:24.437183741 +0000 UTC m=+557.406090130 I0511 07:37:24.483146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:24.483816 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:24.483793441 +0000 UTC m=+557.452699880 I0511 07:37:24.501391 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0511 07:37:24.501684 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-11 07:37:24.501679774 +0000 UTC m=+557.470586163