I0314 07:03:18.596953 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0314 07:03:18.597106 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0314 07:03:18.597200 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0314 07:03:18.603611 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0314 07:03:18.604194 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0314 07:03:18.604265 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0314 07:03:18.604325 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0314 07:03:18.608015 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0314 07:03:18.624199 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0314 07:03:18.628979 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0314 07:03:18.632913 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0314 07:03:18.636845 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0314 07:03:18.642936 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0314 07:03:18.643004 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0314 07:03:18.646784 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0314 07:03:18.649158 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0314 07:03:18.651769 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0314 07:03:18.653576 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0314 07:03:18.655271 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0314 07:03:18.655415 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0314 07:03:18.657116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0314 07:03:18.662260 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0314 07:03:18.665798 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0314 07:03:18.665830 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0314 07:03:18.665923 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0314 07:03:18.668446 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0314 07:03:18.670312 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0314 07:03:18.672080 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0314 07:03:18.672168 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0314 07:03:18.674331 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0314 07:03:18.676252 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0314 07:03:18.677947 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0314 07:03:18.678733 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0314 07:03:18.683009 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.683312 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.683567 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.683888 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.684723 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.685211 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.686313 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.686793 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.687056 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:18.714581 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 07:03:40.078982 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-14 07:03:40.078959771 +0000 UTC m=+21.512502645 I0314 07:03:40.743981 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:03:40.744039 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-14 07:03:40.744032531 +0000 UTC m=+22.177575395 I0314 07:03:40.744709 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-14 07:03:40.744703385 +0000 UTC m=+22.178246249 E0314 07:03:40.767825 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 07:03:40.767941 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-14 07:03:40.767903939 +0000 UTC m=+22.201446803 E0314 07:03:40.767973 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 07:03:40.771973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:03:40.772261 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-14 07:03:40.772058861 +0000 UTC m=+22.205601755 E0314 07:03:40.808420 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0314 07:03:40.808763 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 07:03:40.808814 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 07:03:40.809035 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0314 07:03:40.816193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:03:40.848495 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-4758k" condition "Approved" to 2026-03-14 07:03:40.848469101 +0000 UTC m=+22.282011965 I0314 07:03:40.879095 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-4758k" condition "Ready" to 2026-03-14 07:03:40.879077288 +0000 UTC m=+22.312620192 I0314 07:03:40.946942 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:03:40.946921199 +0000 UTC m=+22.380464093 I0314 07:03:41.002483 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:03:41.002799 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:03:41.002792665 +0000 UTC m=+22.436335529 I0314 07:03:41.021925 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:03:41.055034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:03:45.809290 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:03:45.809272936 +0000 UTC m=+27.242815820 I0314 07:04:13.457181 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-14 07:04:13.457153103 +0000 UTC m=+54.890695987 I0314 07:04:13.457319 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:04:13.457393 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-14 07:04:13.457382118 +0000 UTC m=+54.890925002 I0314 07:04:13.484453 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-14 07:04:13.484433527 +0000 UTC m=+54.917976421 I0314 07:04:13.488992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:04:13.489080 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-14 07:04:13.48907043 +0000 UTC m=+54.922613314 I0314 07:04:13.742203 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:04:13.821410 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-j2xlw" condition "Approved" to 2026-03-14 07:04:13.821375491 +0000 UTC m=+55.254918385 I0314 07:04:13.929265 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-j2xlw" condition "Ready" to 2026-03-14 07:04:13.92925511 +0000 UTC m=+55.362797974 I0314 07:04:14.040437 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:04:14.040421613 +0000 UTC m=+55.473964477 I0314 07:04:14.217380 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:05.114490 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-14 07:06:05.114447588 +0000 UTC m=+166.547990482 I0314 07:06:05.114731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:06:05.114827 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-14 07:06:05.114814876 +0000 UTC m=+166.548357760 E0314 07:06:05.131397 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0314 07:06:05.131461 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-14 07:06:05.131454666 +0000 UTC m=+166.564997540 I0314 07:06:05.131506 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0314 07:06:05.132984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:05.133086 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-14 07:06:05.133075293 +0000 UTC m=+166.566618177 E0314 07:06:05.143801 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0314 07:06:05.143918 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0314 07:06:05.143943 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0314 07:06:05.143971 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0314 07:06:05.144360 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:06:05.144383 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-14 07:06:05.144376234 +0000 UTC m=+166.577919098 I0314 07:06:05.144578 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-14 07:06:05.144565428 +0000 UTC m=+166.578108322 I0314 07:06:05.161036 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:05.161134 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:06:05.161192 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-14 07:06:05.161185238 +0000 UTC m=+166.594728102 I0314 07:06:05.214510 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:05.247662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-8fg4q" condition "Approved" to 2026-03-14 07:06:05.247648099 +0000 UTC m=+166.681190963 I0314 07:06:05.278180 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-8fg4q" condition "Ready" to 2026-03-14 07:06:05.278167257 +0000 UTC m=+166.711710121 I0314 07:06:05.307360 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:06:05.307343247 +0000 UTC m=+166.740886131 I0314 07:06:05.325074 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:05.325346 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:06:05.325338296 +0000 UTC m=+166.758881150 I0314 07:06:05.345595 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:05.369817 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-z8bxd" condition "Approved" to 2026-03-14 07:06:05.369801515 +0000 UTC m=+166.803344399 I0314 07:06:05.392643 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-z8bxd" condition "Ready" to 2026-03-14 07:06:05.392627742 +0000 UTC m=+166.826170606 I0314 07:06:10.144771 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:06:10.144746885 +0000 UTC m=+171.578289769 I0314 07:06:10.162410 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-z8bxd" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:06:10.162396417 +0000 UTC m=+171.595939301 I0314 07:06:10.194033 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:06:10.194012699 +0000 UTC m=+171.627555583 I0314 07:06:10.211824 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:10.212334 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:06:10.212323427 +0000 UTC m=+171.645866311 I0314 07:06:10.227891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:06:10.232116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:09:10.792141 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-155.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:09:10.792209 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-155.nip.io-tls" condition "Issuing" to 2026-03-14 07:09:10.79218311 +0000 UTC m=+352.225725994 I0314 07:09:10.792711 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-155.nip.io-tls" condition "Ready" to 2026-03-14 07:09:10.792695872 +0000 UTC m=+352.226238756 I0314 07:09:10.810791 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-155.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-155.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:09:10.810847 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-155.nip.io-tls" condition "Ready" to 2026-03-14 07:09:10.81084253 +0000 UTC m=+352.244385374 I0314 07:09:10.955027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-155.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-155.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:09:10.984113 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-155.nip.io-tls-95wkp" condition "Approved" to 2026-03-14 07:09:10.984096904 +0000 UTC m=+352.417639768 I0314 07:09:11.004169 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-155.nip.io-tls-95wkp" condition "Ready" to 2026-03-14 07:09:11.004148856 +0000 UTC m=+352.437691740 I0314 07:09:11.075882 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-155.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:09:11.075865467 +0000 UTC m=+352.509408321 I0314 07:09:11.112212 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-155.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-155.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:09:11.112605 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-155.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:09:11.112599653 +0000 UTC m=+352.546142517 I0314 07:09:11.117152 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-155.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-155.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:09:11.129593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-155.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-155.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:09:11.129915 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-155.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:09:11.129905572 +0000 UTC m=+352.563448436 I0314 07:09:11.134731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-155.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-155.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:10:21.817918 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:10:21.818047 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-14 07:10:21.818021408 +0000 UTC m=+423.251564312 I0314 07:10:21.818019 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-14 07:10:21.817984637 +0000 UTC m=+423.251527531 E0314 07:10:21.831101 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 07:10:21.831156 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-14 07:10:21.831144001 +0000 UTC m=+423.264686885 E0314 07:10:21.831227 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 07:10:21.834457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:10:21.834533 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:10:21.834559 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-14 07:10:21.834550547 +0000 UTC m=+423.268093431 E0314 07:10:21.845165 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0314 07:10:21.845316 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 07:10:21.845425 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 07:10:21.845471 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0314 07:10:21.872949 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4n2jk" condition "Approved" to 2026-03-14 07:10:21.872933963 +0000 UTC m=+423.306476857 I0314 07:10:21.885382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4n2jk" condition "Ready" to 2026-03-14 07:10:21.885367392 +0000 UTC m=+423.318910286 I0314 07:10:21.909631 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:10:21.909619084 +0000 UTC m=+423.343161978 I0314 07:10:21.931671 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:10:21.931927 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:10:21.931921121 +0000 UTC m=+423.365463985 I0314 07:10:21.947121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:10:21.947366 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:10:21.947358017 +0000 UTC m=+423.380900881 I0314 07:10:26.846272 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:10:26.84625782 +0000 UTC m=+428.279800704 I0314 07:11:04.212585 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:11:04.212648 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-14 07:11:04.212640807 +0000 UTC m=+465.646183681 I0314 07:11:04.212988 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-14 07:11:04.212976504 +0000 UTC m=+465.646519368 I0314 07:11:04.214835 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:11:04.214877 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-14 07:11:04.214870557 +0000 UTC m=+465.648413431 I0314 07:11:04.214945 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-14 07:11:04.214933578 +0000 UTC m=+465.648476432 I0314 07:11:04.215133 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:11:04.215166 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-14 07:11:04.215160853 +0000 UTC m=+465.648703727 I0314 07:11:04.215337 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-14 07:11:04.215312636 +0000 UTC m=+465.648855500 I0314 07:11:04.261664 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.261756 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:11:04.261784 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-14 07:11:04.261778593 +0000 UTC m=+465.695321447 I0314 07:11:04.269262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.269345 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-14 07:11:04.269337312 +0000 UTC m=+465.702880176 I0314 07:11:04.272795 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.272892 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-14 07:11:04.272882911 +0000 UTC m=+465.706425775 I0314 07:11:04.343708 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.396172 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lr975" condition "Approved" to 2026-03-14 07:11:04.396150281 +0000 UTC m=+465.829693165 I0314 07:11:04.423196 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lr975" condition "Ready" to 2026-03-14 07:11:04.423181244 +0000 UTC m=+465.856724128 I0314 07:11:04.452317 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:04.452298513 +0000 UTC m=+465.885841397 I0314 07:11:04.474531 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.474882 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:04.474873927 +0000 UTC m=+465.908416791 I0314 07:11:04.495546 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.508332 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.508561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.564769 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-j29n9" condition "Approved" to 2026-03-14 07:11:04.564753232 +0000 UTC m=+465.998296096 I0314 07:11:04.594480 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-j29n9" condition "Ready" to 2026-03-14 07:11:04.594462775 +0000 UTC m=+466.028005639 I0314 07:11:04.757575 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:04.757560423 +0000 UTC m=+466.191103287 I0314 07:11:04.859017 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:04.859376 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:04.859369804 +0000 UTC m=+466.292912668 E0314 07:11:05.229696 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-mllkt\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0314 07:11:05.258318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:05.366529 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-c7nv2" condition "Approved" to 2026-03-14 07:11:05.366514116 +0000 UTC m=+466.800057010 I0314 07:11:05.586354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-c7nv2" condition "Ready" to 2026-03-14 07:11:05.5863374 +0000 UTC m=+467.019880284 I0314 07:11:06.111142 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" resource_name="grafana-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="grafana-tls-c7nv2" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="grafana-tls-f8f7q" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0314 07:11:06.346682 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lkdx7" condition "Approved" to 2026-03-14 07:11:06.346669121 +0000 UTC m=+467.780211975 I0314 07:11:06.616100 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lkdx7" condition "Ready" to 2026-03-14 07:11:06.616087431 +0000 UTC m=+468.049630295 I0314 07:11:06.869600 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:06.869582056 +0000 UTC m=+468.303124940 I0314 07:11:06.957552 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:06.957880 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:06.957871035 +0000 UTC m=+468.391413899 I0314 07:11:07.206507 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:07.281964 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:18.432150 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" condition "Ready" to 2026-03-14 07:11:18.432100044 +0000 UTC m=+479.865642928 I0314 07:11:18.432385 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:11:18.432453 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" condition "Issuing" to 2026-03-14 07:11:18.432438831 +0000 UTC m=+479.865981725 I0314 07:11:18.449679 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-phmtz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:18.449822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:11:18.449854 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" condition "Issuing" to 2026-03-14 07:11:18.44984279 +0000 UTC m=+479.883385684 I0314 07:11:18.665569 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-phmtz-6shmz" condition "Approved" to 2026-03-14 07:11:18.665553742 +0000 UTC m=+480.099096606 I0314 07:11:18.685746 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-phmtz-6shmz" condition "Ready" to 2026-03-14 07:11:18.685734722 +0000 UTC m=+480.119277596 I0314 07:11:18.725665 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:18.725646752 +0000 UTC m=+480.159189646 I0314 07:11:18.750054 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-phmtz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:11:18.750365 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:11:18.750357334 +0000 UTC m=+480.183900198 I0314 07:11:18.773563 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-phmtz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-phmtz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:12:08.919182 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:12:08.919249 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-14 07:12:08.919227673 +0000 UTC m=+530.352770567 I0314 07:12:08.919598 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-14 07:12:08.919574701 +0000 UTC m=+530.353117595 I0314 07:12:08.943376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:12:08.943467 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:12:08.943490 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-14 07:12:08.943481685 +0000 UTC m=+530.377024549 I0314 07:12:09.386811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:12:09.437978 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mjzcb" condition "Approved" to 2026-03-14 07:12:09.437961478 +0000 UTC m=+530.871504352 I0314 07:12:09.509495 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mjzcb" condition "Ready" to 2026-03-14 07:12:09.509480616 +0000 UTC m=+530.943023490 I0314 07:12:09.560025 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:12:09.560007556 +0000 UTC m=+530.993550400 I0314 07:12:09.595094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:12:09.722067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:15:32.766120 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:15:32.766178 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-14 07:15:32.766150998 +0000 UTC m=+734.199693912 I0314 07:15:32.766251 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-14 07:15:32.76623136 +0000 UTC m=+734.199774284 I0314 07:15:32.785101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:15:32.785301 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-14 07:15:32.785252884 +0000 UTC m=+734.218795808 I0314 07:15:32.940841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:15:32.973963 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9c4sc" condition "Approved" to 2026-03-14 07:15:32.973947997 +0000 UTC m=+734.407490851 I0314 07:15:32.990618 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9c4sc" condition "Ready" to 2026-03-14 07:15:32.990605728 +0000 UTC m=+734.424148582 I0314 07:15:33.030755 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:15:33.030745475 +0000 UTC m=+734.464288339 I0314 07:15:33.067846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:15:33.068150 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:15:33.068143619 +0000 UTC m=+734.501686483 I0314 07:15:33.090709 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:15:33.091956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:17:54.839558 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:17:54.839644 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-14 07:17:54.839619863 +0000 UTC m=+876.273162777 I0314 07:17:54.839630 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-14 07:17:54.839598123 +0000 UTC m=+876.273141017 I0314 07:17:54.860325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:17:54.860413 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:17:54.860438 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-14 07:17:54.860431207 +0000 UTC m=+876.293974071 I0314 07:17:55.029671 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-qphc4" condition "Approved" to 2026-03-14 07:17:55.029660931 +0000 UTC m=+876.463203785 I0314 07:17:55.046932 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-qphc4" condition "Ready" to 2026-03-14 07:17:55.046920996 +0000 UTC m=+876.480463860 I0314 07:17:55.080106 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:17:55.080094066 +0000 UTC m=+876.513636930 I0314 07:17:55.099476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:17:55.100155 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:17:55.100147313 +0000 UTC m=+876.533690177 I0314 07:17:55.146251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:17:55.161042 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:17:55.161466 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:17:55.16144987 +0000 UTC m=+876.594992764 I0314 07:19:06.509112 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-14 07:19:06.509096827 +0000 UTC m=+947.942639681 I0314 07:19:06.509191 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:19:06.509275 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-14 07:19:06.509264931 +0000 UTC m=+947.942807815 I0314 07:19:06.526536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:19:06.526650 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:19:06.526747 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-14 07:19:06.52673609 +0000 UTC m=+947.960278984 I0314 07:19:06.912501 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-xxj2w" condition "Approved" to 2026-03-14 07:19:06.91248921 +0000 UTC m=+948.346032084 I0314 07:19:06.930036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-xxj2w" condition "Ready" to 2026-03-14 07:19:06.93002087 +0000 UTC m=+948.363563734 I0314 07:19:06.971035 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:19:06.971026344 +0000 UTC m=+948.404569198 I0314 07:19:06.993706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:19:07.038801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:22:24.538433 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:22:24.538477 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-14 07:22:24.538445679 +0000 UTC m=+1145.971988543 I0314 07:22:24.538536 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-14 07:22:24.538523161 +0000 UTC m=+1145.972066065 I0314 07:22:24.560745 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:22:24.560828 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 07:22:24.560844 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-14 07:22:24.560838263 +0000 UTC m=+1145.994381127 I0314 07:22:24.822233 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-wxphr" condition "Approved" to 2026-03-14 07:22:24.822219059 +0000 UTC m=+1146.255761953 I0314 07:22:24.844215 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-wxphr" condition "Ready" to 2026-03-14 07:22:24.844204574 +0000 UTC m=+1146.277747438 I0314 07:22:24.875031 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:22:24.875016274 +0000 UTC m=+1146.308559138 I0314 07:22:24.902553 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:22:24.902862 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:22:24.902857028 +0000 UTC m=+1146.336399882 I0314 07:22:24.905138 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:22:24.920185 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 07:22:24.920740 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 07:22:24.920729052 +0000 UTC m=+1146.354271946