I0401 02:23:49.644956 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0401 02:23:49.645095 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0401 02:23:49.645195 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0401 02:23:49.650000 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0401 02:23:49.650350 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0401 02:23:49.650503 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0401 02:23:49.650517 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0401 02:23:49.653034 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0401 02:23:49.670690 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0401 02:23:49.678771 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0401 02:23:49.682297 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0401 02:23:49.684035 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0401 02:23:49.684069 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0401 02:23:49.686092 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0401 02:23:49.687961 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0401 02:23:49.688049 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0401 02:23:49.689772 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0401 02:23:49.699458 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0401 02:23:49.701165 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0401 02:23:49.703750 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0401 02:23:49.706294 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0401 02:23:49.708564 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0401 02:23:49.708703 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0401 02:23:49.710978 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0401 02:23:49.712558 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0401 02:23:49.712573 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0401 02:23:49.712579 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0401 02:23:49.712688 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0401 02:23:49.715294 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0401 02:23:49.721106 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0401 02:23:49.724949 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0401 02:23:49.727066 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0401 02:23:49.729218 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0401 02:23:49.731795 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.732392 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.732841 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.733291 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.733320 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.733541 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.733666 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.733847 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.733993 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:23:49.813322 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0401 02:24:00.160380 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-01 02:24:00.160358032 +0000 UTC m=+10.567443123 I0401 02:24:00.836694 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-01 02:24:00.836676243 +0000 UTC m=+11.243761354 I0401 02:24:00.836817 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:24:00.836869 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-01 02:24:00.836858366 +0000 UTC m=+11.243943457 E0401 02:24:00.849755 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 02:24:00.849834 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-01 02:24:00.849827789 +0000 UTC m=+11.256912860 E0401 02:24:00.849855 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 02:24:00.852063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:00.852117 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-01 02:24:00.852110538 +0000 UTC m=+11.259195599 E0401 02:24:00.864549 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0401 02:24:00.864625 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 02:24:00.864654 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 02:24:00.864684 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0401 02:24:00.867605 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:00.867652 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-01 02:24:00.867646127 +0000 UTC m=+11.274731198 I0401 02:24:00.872443 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-lvtsv" condition "Approved" to 2026-04-01 02:24:00.872429027 +0000 UTC m=+11.279514128 I0401 02:24:00.879802 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-01 02:24:00.879796073 +0000 UTC m=+11.286881124 I0401 02:24:00.885229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-lvtsv" condition "Ready" to 2026-04-01 02:24:00.885218728 +0000 UTC m=+11.292303789 I0401 02:24:00.889666 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:00.911618 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:24:00.911608895 +0000 UTC m=+11.318693996 I0401 02:24:00.929820 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:00.930153 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:24:00.930142517 +0000 UTC m=+11.337227608 I0401 02:24:00.935899 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:00.950565 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:00.950996 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:24:00.950984367 +0000 UTC m=+11.358069458 I0401 02:24:05.865607 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:24:05.865588598 +0000 UTC m=+16.272673689 I0401 02:24:25.833705 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-01 02:24:25.833670967 +0000 UTC m=+36.240756068 I0401 02:24:25.833760 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:24:25.834376 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-01 02:24:25.834366721 +0000 UTC m=+36.241451792 I0401 02:24:25.843082 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-01 02:24:25.843063814 +0000 UTC m=+36.250148885 I0401 02:24:25.856728 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:25.856857 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-01 02:24:25.856844175 +0000 UTC m=+36.263929276 I0401 02:24:26.024135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:24:26.059383 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-mr4v4" condition "Approved" to 2026-04-01 02:24:26.059367385 +0000 UTC m=+36.466452486 I0401 02:24:26.088671 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-mr4v4" condition "Ready" to 2026-04-01 02:24:26.088659404 +0000 UTC m=+36.495744475 I0401 02:24:26.122255 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:24:26.122235682 +0000 UTC m=+36.529320753 I0401 02:24:26.145345 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:08.274048 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-01 02:26:08.274017481 +0000 UTC m=+138.681102572 I0401 02:26:08.274085 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:26:08.274116 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-01 02:26:08.274108093 +0000 UTC m=+138.681193184 E0401 02:26:08.288094 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0401 02:26:08.288201 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-01 02:26:08.288191129 +0000 UTC m=+138.695276230 I0401 02:26:08.288314 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0401 02:26:08.289948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:08.290070 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:26:08.290151 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-01 02:26:08.290119039 +0000 UTC m=+138.697204160 E0401 02:26:08.298147 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0401 02:26:08.298276 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0401 02:26:08.298322 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0401 02:26:08.298387 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0401 02:26:08.301390 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-01 02:26:08.301377625 +0000 UTC m=+138.708462726 I0401 02:26:08.301736 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:26:08.301764 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-01 02:26:08.301758114 +0000 UTC m=+138.708843205 I0401 02:26:08.318580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:08.318664 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:26:08.318687 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-01 02:26:08.31868025 +0000 UTC m=+138.725765311 I0401 02:26:08.408622 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:08.416939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-mhvjw" condition "Approved" to 2026-04-01 02:26:08.416927814 +0000 UTC m=+138.824012885 I0401 02:26:08.442593 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-mhvjw" condition "Ready" to 2026-04-01 02:26:08.442583683 +0000 UTC m=+138.849668754 I0401 02:26:08.467118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:08.467389 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:26:08.467375205 +0000 UTC m=+138.874460276 I0401 02:26:08.474007 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-vn5b6" condition "Approved" to 2026-04-01 02:26:08.473987663 +0000 UTC m=+138.881072764 I0401 02:26:08.485351 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:08.491102 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-vn5b6" condition "Ready" to 2026-04-01 02:26:08.491093623 +0000 UTC m=+138.898178694 I0401 02:26:13.299007 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:26:13.298992251 +0000 UTC m=+143.706077312 I0401 02:26:13.318701 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-vn5b6" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:26:13.318687664 +0000 UTC m=+143.725772755 I0401 02:26:13.355482 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:26:13.355463328 +0000 UTC m=+143.762548419 I0401 02:26:13.376009 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:13.376442 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:26:13.376429308 +0000 UTC m=+143.783514399 I0401 02:26:13.391765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:26:13.394762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:28:50.119777 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready" to 2026-04-01 02:28:50.119694016 +0000 UTC m=+300.526779127 I0401 02:28:50.120380 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:28:50.120419 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Issuing" to 2026-04-01 02:28:50.120411962 +0000 UTC m=+300.527497053 I0401 02:28:50.143740 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:28:50.143831 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:28:50.143870 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Issuing" to 2026-04-01 02:28:50.143863597 +0000 UTC m=+300.550948698 I0401 02:28:50.421153 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-szwrj" condition "Approved" to 2026-04-01 02:28:50.421134653 +0000 UTC m=+300.828219754 I0401 02:28:50.442195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-szwrj" condition "Ready" to 2026-04-01 02:28:50.442185288 +0000 UTC m=+300.849270359 I0401 02:28:50.466837 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:28:50.466822547 +0000 UTC m=+300.873907618 I0401 02:28:50.485459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:01.561510 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:30:01.561609 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-01 02:30:01.561587204 +0000 UTC m=+371.968672295 I0401 02:30:01.562106 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-01 02:30:01.562081934 +0000 UTC m=+371.969167025 E0401 02:30:01.574259 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 02:30:01.574299 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-01 02:30:01.574290922 +0000 UTC m=+371.981376013 E0401 02:30:01.574366 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0401 02:30:01.576836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:01.576952 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-01 02:30:01.576942258 +0000 UTC m=+371.984027319 E0401 02:30:01.585732 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0401 02:30:01.585927 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 02:30:01.585992 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0401 02:30:01.586045 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0401 02:30:01.595875 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:01.618780 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jfr7w" condition "Approved" to 2026-04-01 02:30:01.618753941 +0000 UTC m=+372.025839032 I0401 02:30:01.632137 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jfr7w" condition "Ready" to 2026-04-01 02:30:01.632121013 +0000 UTC m=+372.039206084 I0401 02:30:01.654593 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:01.654573058 +0000 UTC m=+372.061658179 I0401 02:30:01.671522 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:01.672159 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:01.672146179 +0000 UTC m=+372.079231250 I0401 02:30:01.687333 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:06.587012 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:06.586994094 +0000 UTC m=+376.994079185 I0401 02:30:44.482336 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-01 02:30:44.482321923 +0000 UTC m=+414.889406984 I0401 02:30:44.482738 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:30:44.482760 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-01 02:30:44.482756862 +0000 UTC m=+414.889841923 I0401 02:30:44.482957 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:30:44.482973 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-01 02:30:44.482970217 +0000 UTC m=+414.890055268 I0401 02:30:44.483106 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-01 02:30:44.48308024 +0000 UTC m=+414.890165331 I0401 02:30:44.494075 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-01 02:30:44.494053001 +0000 UTC m=+414.901138082 I0401 02:30:44.494493 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:30:44.494517 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-01 02:30:44.494512881 +0000 UTC m=+414.901597962 I0401 02:30:44.510067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.510155 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-01 02:30:44.510146891 +0000 UTC m=+414.917231942 I0401 02:30:44.511853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.511901 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:30:44.511923 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-01 02:30:44.511917028 +0000 UTC m=+414.919002079 I0401 02:30:44.524266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.525544 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-01 02:30:44.525516106 +0000 UTC m=+414.932601197 I0401 02:30:44.725184 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.763441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-86qnn" condition "Approved" to 2026-04-01 02:30:44.763426039 +0000 UTC m=+415.170511110 I0401 02:30:44.787872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-86qnn" condition "Ready" to 2026-04-01 02:30:44.787853284 +0000 UTC m=+415.194938385 I0401 02:30:44.805611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.824367 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:44.824342534 +0000 UTC m=+415.231427625 I0401 02:30:44.844638 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.845048 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:44.845038142 +0000 UTC m=+415.252123213 I0401 02:30:44.853098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:44.864567 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" E0401 02:30:45.024699 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-9g9m8\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0401 02:30:45.031087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6722n" condition "Approved" to 2026-04-01 02:30:45.031063329 +0000 UTC m=+415.438148420 I0401 02:30:45.050331 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6722n" condition "Ready" to 2026-04-01 02:30:45.050315796 +0000 UTC m=+415.457400867 I0401 02:30:45.220157 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-6722n" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-hj54b" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0401 02:30:45.421834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:45.474612 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wjcpl" condition "Approved" to 2026-04-01 02:30:45.474590593 +0000 UTC m=+415.881675664 I0401 02:30:45.583839 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4lpww" condition "Approved" to 2026-04-01 02:30:45.583824749 +0000 UTC m=+415.990909810 I0401 02:30:45.767778 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wjcpl" condition "Ready" to 2026-04-01 02:30:45.767753363 +0000 UTC m=+416.174838464 I0401 02:30:45.982776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4lpww" condition "Ready" to 2026-04-01 02:30:45.982757932 +0000 UTC m=+416.389843023 I0401 02:30:46.522059 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:46.522035467 +0000 UTC m=+416.929120558 I0401 02:30:46.620206 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:46.62018939 +0000 UTC m=+417.027274471 I0401 02:30:46.737340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:46.737985 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:46.737972096 +0000 UTC m=+417.145057197 I0401 02:30:46.870186 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:46.870725 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:46.870715219 +0000 UTC m=+417.277800320 I0401 02:30:47.270331 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:47.319018 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:47.368825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:52.100032 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" condition "Ready" to 2026-04-01 02:30:52.100007526 +0000 UTC m=+422.507092617 I0401 02:30:52.100082 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:30:52.100131 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" condition "Issuing" to 2026-04-01 02:30:52.100116828 +0000 UTC m=+422.507201929 I0401 02:30:52.123523 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:52.123658 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" condition "Ready" to 2026-04-01 02:30:52.123628454 +0000 UTC m=+422.530713535 I0401 02:30:52.227036 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:52.290919 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qlp5j-rzlkh" condition "Approved" to 2026-04-01 02:30:52.290902916 +0000 UTC m=+422.697987977 I0401 02:30:52.328305 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qlp5j-rzlkh" condition "Ready" to 2026-04-01 02:30:52.328291985 +0000 UTC m=+422.735377056 I0401 02:30:52.365108 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:30:52.365084011 +0000 UTC m=+422.772169112 I0401 02:30:52.383059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:30:52.439013 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qlp5j-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:31:11.274902 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:31:11.274929 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-01 02:31:11.274906715 +0000 UTC m=+441.681991776 I0401 02:31:11.274962 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-01 02:31:11.274949786 +0000 UTC m=+441.682034857 I0401 02:31:11.299470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:31:11.299568 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-01 02:31:11.299558375 +0000 UTC m=+441.706643466 I0401 02:31:11.862135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:31:11.898034 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4mwb4" condition "Approved" to 2026-04-01 02:31:11.898016311 +0000 UTC m=+442.305101412 I0401 02:31:11.917885 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4mwb4" condition "Ready" to 2026-04-01 02:31:11.91787338 +0000 UTC m=+442.324958451 I0401 02:31:11.943036 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:31:11.943016781 +0000 UTC m=+442.350101872 I0401 02:31:11.966404 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:31:11.966828 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:31:11.966820473 +0000 UTC m=+442.373905544 I0401 02:31:11.968542 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:31:11.984348 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:31:11.984751 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:31:11.984741842 +0000 UTC m=+442.391826933 I0401 02:34:40.899540 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-01 02:34:40.899478075 +0000 UTC m=+651.306563186 I0401 02:34:40.899553 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:34:40.899681 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-01 02:34:40.899665439 +0000 UTC m=+651.306750530 I0401 02:34:40.916475 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:34:40.916614 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-01 02:34:40.916567015 +0000 UTC m=+651.323652086 I0401 02:34:41.286741 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:34:41.321322 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kjxxc" condition "Approved" to 2026-04-01 02:34:41.321310891 +0000 UTC m=+651.728395972 I0401 02:34:41.342202 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kjxxc" condition "Ready" to 2026-04-01 02:34:41.342185412 +0000 UTC m=+651.749270513 I0401 02:34:41.373081 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:34:41.373065253 +0000 UTC m=+651.780150354 I0401 02:34:41.395488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:37:17.498508 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:37:17.498545 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-01 02:37:17.498523517 +0000 UTC m=+807.905608588 I0401 02:37:17.498612 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-01 02:37:17.498601139 +0000 UTC m=+807.905686230 I0401 02:37:17.518793 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:37:17.518881 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-01 02:37:17.518872266 +0000 UTC m=+807.925957337 I0401 02:37:17.672941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:37:17.710648 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-cmqgx" condition "Approved" to 2026-04-01 02:37:17.710630911 +0000 UTC m=+808.117716012 I0401 02:37:17.731247 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-cmqgx" condition "Ready" to 2026-04-01 02:37:17.731231167 +0000 UTC m=+808.138316268 I0401 02:37:17.758346 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:37:17.758330318 +0000 UTC m=+808.165415389 I0401 02:37:17.781716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:37:17.782015 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:37:17.782008038 +0000 UTC m=+808.189093109 I0401 02:37:17.791569 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:37:17.804391 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:38:25.774653 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-01 02:38:25.774628397 +0000 UTC m=+876.181713458 I0401 02:38:25.774984 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:38:25.775005 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-01 02:38:25.775002605 +0000 UTC m=+876.182087666 I0401 02:38:25.795718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:38:25.795786 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:38:25.795801 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-01 02:38:25.795795144 +0000 UTC m=+876.202880215 I0401 02:38:25.997576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-9shbl" condition "Approved" to 2026-04-01 02:38:25.99754985 +0000 UTC m=+876.404634941 I0401 02:38:25.998473 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:38:26.021908 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-9shbl" condition "Ready" to 2026-04-01 02:38:26.021889293 +0000 UTC m=+876.428974384 I0401 02:38:26.052231 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:38:26.052214643 +0000 UTC m=+876.459299734 I0401 02:38:26.075632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:38:26.075931 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:38:26.075920214 +0000 UTC m=+876.483005285 I0401 02:38:26.095947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:38:26.096280 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:38:26.096272373 +0000 UTC m=+876.503357444 I0401 02:41:33.151039 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:41:33.151036 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-01 02:41:33.150999676 +0000 UTC m=+1063.558084727 I0401 02:41:33.151090 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-01 02:41:33.151078839 +0000 UTC m=+1063.558163940 I0401 02:41:33.168798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0401 02:41:33.168924 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0401 02:41:33.168959 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-01 02:41:33.168949335 +0000 UTC m=+1063.576034436 I0401 02:41:33.354392 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tgnvh" condition "Approved" to 2026-04-01 02:41:33.354381918 +0000 UTC m=+1063.761466989 I0401 02:41:33.370421 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tgnvh" condition "Ready" to 2026-04-01 02:41:33.370411146 +0000 UTC m=+1063.777496197 I0401 02:41:33.394257 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-01 02:41:33.394245839 +0000 UTC m=+1063.801330910 I0401 02:41:33.414701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"