I0519 02:26:08.223181 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0519 02:26:08.223419 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0519 02:26:08.223586 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0519 02:26:08.228663 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0519 02:26:08.228999 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0519 02:26:08.230647 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0519 02:26:08.230765 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0519 02:26:08.231415 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0519 02:26:08.243614 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0519 02:26:08.243819 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0519 02:26:08.248292 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0519 02:26:08.259803 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0519 02:26:08.264113 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0519 02:26:08.265224 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0519 02:26:08.265256 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0519 02:26:08.265266 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0519 02:26:08.265395 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0519 02:26:08.268027 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0519 02:26:08.270810 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0519 02:26:08.272435 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0519 02:26:08.274226 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0519 02:26:08.279741 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0519 02:26:08.283798 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0519 02:26:08.283872 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0519 02:26:08.287169 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0519 02:26:08.289005 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0519 02:26:08.290798 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0519 02:26:08.292420 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0519 02:26:08.292584 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0519 02:26:08.294463 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0519 02:26:08.297006 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0519 02:26:08.301974 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0519 02:26:08.305024 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0519 02:26:08.306809 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.307599 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.307956 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.308209 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.308256 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.308437 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.308704 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.308929 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.309820 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:08.383085 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0519 02:26:24.449314 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-19 02:26:24.449302615 +0000 UTC m=+16.258134399 I0519 02:26:25.151177 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-19 02:26:25.1511584 +0000 UTC m=+16.959990204 I0519 02:26:25.151264 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:26:25.151468 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-19 02:26:25.151456648 +0000 UTC m=+16.960288462 E0519 02:26:25.166272 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 02:26:25.166370 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-19 02:26:25.166363901 +0000 UTC m=+16.975195685 E0519 02:26:25.166415 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 02:26:25.171617 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:25.171693 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:26:25.171722 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-19 02:26:25.171712912 +0000 UTC m=+16.980544716 E0519 02:26:25.179773 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0519 02:26:25.181605 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 02:26:25.181686 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 02:26:25.181715 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0519 02:26:25.207592 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-n8q56" condition "Approved" to 2026-05-19 02:26:25.207582307 +0000 UTC m=+17.016414091 I0519 02:26:25.223517 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-n8q56" condition "Ready" to 2026-05-19 02:26:25.223503197 +0000 UTC m=+17.032334981 I0519 02:26:25.246209 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:26:25.246198565 +0000 UTC m=+17.055030349 I0519 02:26:25.260852 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:25.261498 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:26:25.261491009 +0000 UTC m=+17.070322783 I0519 02:26:25.263767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:25.276306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:25.276675 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:26:25.276652048 +0000 UTC m=+17.085483832 I0519 02:26:25.279146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:30.180295 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:26:30.180253103 +0000 UTC m=+21.989084907 I0519 02:26:51.431607 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:26:51.431640 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-19 02:26:51.431625637 +0000 UTC m=+43.240457401 I0519 02:26:51.431682 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-19 02:26:51.431674718 +0000 UTC m=+43.240506492 I0519 02:26:51.447457 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-19 02:26:51.447444969 +0000 UTC m=+43.256276753 I0519 02:26:51.454523 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:51.454591 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:26:51.454617 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-19 02:26:51.454611422 +0000 UTC m=+43.263443196 I0519 02:26:51.616705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:51.620607 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jwnd2" condition "Approved" to 2026-05-19 02:26:51.620599294 +0000 UTC m=+43.429431078 I0519 02:26:51.651037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-jwnd2" condition "Ready" to 2026-05-19 02:26:51.651028739 +0000 UTC m=+43.459860513 I0519 02:26:51.679457 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:26:51.679445293 +0000 UTC m=+43.488277067 I0519 02:26:51.701731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:26:51.702131 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:26:51.702123409 +0000 UTC m=+43.510955203 I0519 02:26:51.720702 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:30:50.662550 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Ready" to 2026-05-19 02:30:50.662519091 +0000 UTC m=+282.471350875 I0519 02:30:50.663134 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-30.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:30:50.663171 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Issuing" to 2026-05-19 02:30:50.663161954 +0000 UTC m=+282.471993758 I0519 02:30:50.690560 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:30:50.690658 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-30.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:30:50.691150 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Issuing" to 2026-05-19 02:30:50.691141551 +0000 UTC m=+282.499973355 I0519 02:30:51.024119 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-30.nip.io-tls-m7n8w" condition "Approved" to 2026-05-19 02:30:51.024095379 +0000 UTC m=+282.832927163 I0519 02:30:51.061821 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-30.nip.io-tls-m7n8w" condition "Ready" to 2026-05-19 02:30:51.061806403 +0000 UTC m=+282.870638187 I0519 02:30:51.102639 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:30:51.10262348 +0000 UTC m=+282.911455294 I0519 02:30:51.120653 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:30:51.121201 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-30.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:30:51.121190085 +0000 UTC m=+282.930021889 I0519 02:30:51.136939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-30.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-30.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:31:55.629792 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:31:55.629827 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-19 02:31:55.629819109 +0000 UTC m=+347.438650903 I0519 02:31:55.630338 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-19 02:31:55.630310279 +0000 UTC m=+347.439142083 E0519 02:31:55.645645 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 02:31:55.645715 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-19 02:31:55.645707629 +0000 UTC m=+347.454539403 E0519 02:31:55.645754 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0519 02:31:55.645895 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:31:55.646063 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-19 02:31:55.646054906 +0000 UTC m=+347.454886670 E0519 02:31:55.659296 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0519 02:31:55.659432 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 02:31:55.659480 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0519 02:31:55.659514 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0519 02:31:55.663259 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:31:55.663587 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:31:55.663777 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-19 02:31:55.663767596 +0000 UTC m=+347.472599370 I0519 02:31:55.679615 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kcbbr" condition "Approved" to 2026-05-19 02:31:55.679603674 +0000 UTC m=+347.488435478 I0519 02:31:55.692591 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-kcbbr" condition "Ready" to 2026-05-19 02:31:55.692579132 +0000 UTC m=+347.501410916 I0519 02:31:55.712503 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:31:55.712478768 +0000 UTC m=+347.521310552 I0519 02:31:55.729393 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:00.660656 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:00.66064347 +0000 UTC m=+352.469475274 I0519 02:32:41.218413 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-19 02:32:41.21839118 +0000 UTC m=+393.027222954 I0519 02:32:41.220531 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-19 02:32:41.220514817 +0000 UTC m=+393.029346591 I0519 02:32:41.225860 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:41.225912 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-19 02:32:41.225902835 +0000 UTC m=+393.034734599 I0519 02:32:41.226541 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-19 02:32:41.226534849 +0000 UTC m=+393.035366623 I0519 02:32:41.226727 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:41.226753 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-19 02:32:41.226749874 +0000 UTC m=+393.035581648 I0519 02:32:41.226897 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:41.226913 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-19 02:32:41.226910257 +0000 UTC m=+393.035742031 I0519 02:32:41.277859 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.280341 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:41.280613 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.280399 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-19 02:32:41.28039165 +0000 UTC m=+393.089223424 I0519 02:32:41.280685 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:41.280709 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-19 02:32:41.280703956 +0000 UTC m=+393.089535720 I0519 02:32:41.280763 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.280917 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:41.280975 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-19 02:32:41.280965392 +0000 UTC m=+393.089797166 I0519 02:32:41.719182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.721823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.731621 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-w8tq9" condition "Approved" to 2026-05-19 02:32:41.731607697 +0000 UTC m=+393.540439481 I0519 02:32:41.741620 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-sn4vn" condition "Approved" to 2026-05-19 02:32:41.741595805 +0000 UTC m=+393.550427579 I0519 02:32:41.755507 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-w8tq9" condition "Ready" to 2026-05-19 02:32:41.755493411 +0000 UTC m=+393.564325195 I0519 02:32:41.767872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-sn4vn" condition "Ready" to 2026-05-19 02:32:41.767859491 +0000 UTC m=+393.576691265 I0519 02:32:41.805570 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:41.805534918 +0000 UTC m=+393.614366692 I0519 02:32:41.806118 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:41.806115121 +0000 UTC m=+393.614946895 I0519 02:32:41.846160 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.846490 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:41.846481766 +0000 UTC m=+393.655313540 I0519 02:32:41.846884 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.869937 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:41.870226 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:41.870215827 +0000 UTC m=+393.679047601 E0519 02:32:41.891106 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-p8k7s\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0519 02:32:42.101587 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bgmhk" condition "Approved" to 2026-05-19 02:32:42.101570012 +0000 UTC m=+393.910401786 I0519 02:32:42.209054 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bgmhk" condition "Ready" to 2026-05-19 02:32:42.20904418 +0000 UTC m=+394.017875964 I0519 02:32:42.551654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" E0519 02:32:42.749445 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-pphpv\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0519 02:32:42.800059 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:42.800045548 +0000 UTC m=+394.608877322 I0519 02:32:42.897644 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:42.898089 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:42.89808059 +0000 UTC m=+394.706912374 I0519 02:32:43.147492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:43.200407 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:49.494594 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" condition "Ready" to 2026-05-19 02:32:49.494569692 +0000 UTC m=+401.303401476 I0519 02:32:49.494998 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:49.495017 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" condition "Issuing" to 2026-05-19 02:32:49.495012903 +0000 UTC m=+401.303844687 I0519 02:32:49.508850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-f9c78-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:32:49.509000 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:32:49.509043 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" condition "Issuing" to 2026-05-19 02:32:49.509032551 +0000 UTC m=+401.317864335 I0519 02:32:49.736404 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-f9c78-4n9gc" condition "Approved" to 2026-05-19 02:32:49.736385454 +0000 UTC m=+401.545217238 I0519 02:32:49.762883 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-f9c78-4n9gc" condition "Ready" to 2026-05-19 02:32:49.762869667 +0000 UTC m=+401.571701461 I0519 02:32:49.790885 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:32:49.790857763 +0000 UTC m=+401.599689537 I0519 02:32:49.805969 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-f9c78-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-f9c78-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:33:02.567188 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-19 02:33:02.56717591 +0000 UTC m=+414.376007684 I0519 02:33:02.567447 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:33:02.567467 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-19 02:33:02.567465067 +0000 UTC m=+414.376296841 I0519 02:33:02.581336 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:33:02.581426 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-19 02:33:02.581420226 +0000 UTC m=+414.390252010 I0519 02:33:02.773952 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:33:02.804368 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2pv44" condition "Approved" to 2026-05-19 02:33:02.804353857 +0000 UTC m=+414.613185641 I0519 02:33:02.826048 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2pv44" condition "Ready" to 2026-05-19 02:33:02.826037697 +0000 UTC m=+414.634869481 I0519 02:33:02.852951 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:33:02.852936581 +0000 UTC m=+414.661768365 I0519 02:33:02.873179 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:36:27.119709 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:36:27.119766 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-19 02:36:27.119759218 +0000 UTC m=+618.928591002 I0519 02:36:27.120205 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-19 02:36:27.120199817 +0000 UTC m=+618.929031601 I0519 02:36:27.142351 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:36:27.142422 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0519 02:36:27.142447 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-19 02:36:27.142441159 +0000 UTC m=+618.951272943 I0519 02:36:27.326099 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-rtxdn" condition "Approved" to 2026-05-19 02:36:27.326084892 +0000 UTC m=+619.134916676 I0519 02:36:27.343978 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-rtxdn" condition "Ready" to 2026-05-19 02:36:27.343961973 +0000 UTC m=+619.152793757 I0519 02:36:27.373710 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:36:27.373698645 +0000 UTC m=+619.182530419 I0519 02:36:27.401164 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0519 02:36:27.401762 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-19 02:36:27.401756349 +0000 UTC m=+619.210588123 I0519 02:36:27.422369 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again"