I0420 05:52:57.040739 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0420 05:52:57.040890 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0420 05:52:57.040980 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0420 05:52:57.045926 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0420 05:52:57.046367 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0420 05:52:57.046424 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0420 05:52:57.046502 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0420 05:52:57.048808 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0420 05:52:57.063917 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0420 05:52:57.071187 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0420 05:52:57.076409 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0420 05:52:57.078637 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0420 05:52:57.080952 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0420 05:52:57.083286 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0420 05:52:57.083311 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0420 05:52:57.083413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0420 05:52:57.085803 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0420 05:52:57.088240 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0420 05:52:57.094258 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0420 05:52:57.094348 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0420 05:52:57.098255 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0420 05:52:57.100799 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0420 05:52:57.102487 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0420 05:52:57.104308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0420 05:52:57.105981 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0420 05:52:57.107596 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0420 05:52:57.107645 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0420 05:52:57.109692 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0420 05:52:57.115075 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0420 05:52:57.118011 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0420 05:52:57.120325 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0420 05:52:57.120362 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0420 05:52:57.120394 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0420 05:52:57.123018 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.123529 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.123721 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.142341 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.157698 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.179250 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.195212 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.206794 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.217247 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:52:57.232589 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 05:53:09.823048 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-20 05:53:09.823030693 +0000 UTC m=+12.821798191 I0420 05:53:10.521474 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 05:53:10.521458606 +0000 UTC m=+13.520226104 I0420 05:53:10.521702 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:53:10.521789 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 05:53:10.521775154 +0000 UTC m=+13.520542652 E0420 05:53:10.535908 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:53:10.535982 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-20 05:53:10.535973088 +0000 UTC m=+13.534740566 E0420 05:53:10.536005 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:53:10.539027 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:10.539094 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:53:10.539112 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 05:53:10.539108004 +0000 UTC m=+13.537875482 E0420 05:53:10.550300 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0420 05:53:10.550613 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:53:10.550642 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:53:10.550702 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0420 05:53:10.581039 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-dwvc5" condition "Approved" to 2026-04-20 05:53:10.58102267 +0000 UTC m=+13.579790168 I0420 05:53:10.593520 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-dwvc5" condition "Ready" to 2026-04-20 05:53:10.593503783 +0000 UTC m=+13.592271261 I0420 05:53:10.614526 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:53:10.614502902 +0000 UTC m=+13.613270410 I0420 05:53:10.634262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:10.634787 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:53:10.634775193 +0000 UTC m=+13.633542671 I0420 05:53:10.638947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:10.647312 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:10.647536 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:53:10.647530753 +0000 UTC m=+13.646298231 I0420 05:53:10.651121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:15.551469 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:53:15.551455874 +0000 UTC m=+18.550223382 I0420 05:53:35.592645 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:53:35.592695 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 05:53:35.592685832 +0000 UTC m=+38.591453320 I0420 05:53:35.592942 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 05:53:35.592917118 +0000 UTC m=+38.591684646 I0420 05:53:35.608796 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-20 05:53:35.608780962 +0000 UTC m=+38.607548440 I0420 05:53:35.616842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:35.616961 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 05:53:35.616951891 +0000 UTC m=+38.615719369 I0420 05:53:35.711959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:36.347250 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ntrwt" condition "Approved" to 2026-04-20 05:53:36.347235026 +0000 UTC m=+39.346002534 I0420 05:53:36.378704 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-ntrwt" condition "Ready" to 2026-04-20 05:53:36.378687308 +0000 UTC m=+39.377454816 E0420 05:53:36.378796 1 selfsigned.go:127] "Referenced secret openstack/rabbitmq-messaging-topology-operator-webhook-hppz4 not found" err="secret \"rabbitmq-messaging-topology-operator-webhook-hppz4\" not found" logger="cert-manager.certificaterequests-issuer-selfsigned.sign" resource_name="rabbitmq-messaging-topology-operator-webhook-ntrwt" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" E0420 05:53:36.394534 1 selfsigned.go:127] "Referenced secret openstack/rabbitmq-messaging-topology-operator-webhook-hppz4 not found" err="secret \"rabbitmq-messaging-topology-operator-webhook-hppz4\" not found" logger="cert-manager.certificaterequests-issuer-selfsigned.sign" resource_name="rabbitmq-messaging-topology-operator-webhook-ntrwt" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" I0420 05:53:36.486903 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" resource_name="rabbitmq-messaging-topology-operator-webhook" resource_namespace="openstack" resource_kind="Certificate" resource_version="v1" resource_name="rabbitmq-messaging-topology-operator-webhook-ntrwt" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" resource_name="rabbitmq-messaging-topology-operator-webhook-hppz4" resource_namespace="openstack" resource_kind="Secret" resource_version="v1" I0420 05:53:36.513828 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-8crnc" condition "Approved" to 2026-04-20 05:53:36.513805894 +0000 UTC m=+39.512573422 I0420 05:53:36.535880 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-8crnc" condition "Ready" to 2026-04-20 05:53:36.535868819 +0000 UTC m=+39.534636297 I0420 05:53:36.567959 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:53:36.567932277 +0000 UTC m=+39.566699775 I0420 05:53:36.595769 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:53:36.654329 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:21.853081 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-20 05:55:21.853062245 +0000 UTC m=+144.851829753 I0420 05:55:21.853120 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:55:21.853166 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-20 05:55:21.853161967 +0000 UTC m=+144.851929445 E0420 05:55:21.868695 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 05:55:21.868767 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-20 05:55:21.868727954 +0000 UTC m=+144.867495432 I0420 05:55:21.868813 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 05:55:21.870340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:21.870411 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-20 05:55:21.870402833 +0000 UTC m=+144.869170331 E0420 05:55:21.878803 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0420 05:55:21.878841 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-20 05:55:21.878835302 +0000 UTC m=+144.877602780 E0420 05:55:21.878873 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 05:55:21.878811 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:55:21.878899 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0420 05:55:21.878931 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0420 05:55:21.878902 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-20 05:55:21.878893893 +0000 UTC m=+144.877661381 I0420 05:55:21.893547 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:21.893687 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:55:21.893792 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-20 05:55:21.893747973 +0000 UTC m=+144.892515481 I0420 05:55:22.021222 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-xg8s5" condition "Approved" to 2026-04-20 05:55:22.021208672 +0000 UTC m=+145.019976180 I0420 05:55:22.036910 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-xg8s5" condition "Ready" to 2026-04-20 05:55:22.036898301 +0000 UTC m=+145.035665809 I0420 05:55:22.082812 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:22.112297 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bbvfl" condition "Approved" to 2026-04-20 05:55:22.112279185 +0000 UTC m=+145.111046693 I0420 05:55:22.135980 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bbvfl" condition "Ready" to 2026-04-20 05:55:22.135929082 +0000 UTC m=+145.134696560 I0420 05:55:22.161703 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:55:22.161686618 +0000 UTC m=+145.160454096 I0420 05:55:22.179126 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:22.179530 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:55:22.179519068 +0000 UTC m=+145.178286556 I0420 05:55:22.196430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:26.880035 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:55:26.880020774 +0000 UTC m=+149.878788282 I0420 05:55:26.892425 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-xg8s5" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:55:26.892417666 +0000 UTC m=+149.891185134 I0420 05:55:26.922697 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:55:26.922688438 +0000 UTC m=+149.921455896 I0420 05:55:26.946770 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:55:26.947032 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:55:26.947004201 +0000 UTC m=+149.945771669 I0420 05:55:26.964762 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:53.270671 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-95.nip.io-tls" condition "Ready" to 2026-04-20 05:57:53.270656587 +0000 UTC m=+296.269424065 I0420 05:57:53.270814 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-95.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:53.270878 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-95.nip.io-tls" condition "Issuing" to 2026-04-20 05:57:53.270871452 +0000 UTC m=+296.269638960 I0420 05:57:53.286121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:53.286181 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-95.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:57:53.286196 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-95.nip.io-tls" condition "Issuing" to 2026-04-20 05:57:53.286189948 +0000 UTC m=+296.284957436 I0420 05:57:53.435612 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-95.nip.io-tls-97bxp" condition "Approved" to 2026-04-20 05:57:53.435601014 +0000 UTC m=+296.434368492 I0420 05:57:53.451580 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-95.nip.io-tls-97bxp" condition "Ready" to 2026-04-20 05:57:53.451572875 +0000 UTC m=+296.450340353 I0420 05:57:53.479581 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-95.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:53.479559443 +0000 UTC m=+296.478326971 I0420 05:57:53.503057 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:53.503381 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-95.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:53.503373401 +0000 UTC m=+296.502140879 I0420 05:57:53.509143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:53.521426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-95.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-95.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:57:53.521894 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-95.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:57:53.521880623 +0000 UTC m=+296.520648131 I0420 05:59:02.579338 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 05:59:02.579291972 +0000 UTC m=+365.578059470 I0420 05:59:02.579780 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:02.579891 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 05:59:02.579876156 +0000 UTC m=+365.578643654 E0420 05:59:02.592343 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:59:02.592398 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-20 05:59:02.592387755 +0000 UTC m=+365.591155253 E0420 05:59:02.592465 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 05:59:02.595448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:02.595736 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:02.595896 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 05:59:02.595885159 +0000 UTC m=+365.594652657 E0420 05:59:02.601146 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0420 05:59:02.601249 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:59:02.601287 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 05:59:02.601331 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0420 05:59:02.634588 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-6c56g" condition "Approved" to 2026-04-20 05:59:02.634565226 +0000 UTC m=+365.633332724 I0420 05:59:02.637004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:02.648324 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-6c56g" condition "Ready" to 2026-04-20 05:59:02.648306305 +0000 UTC m=+365.647073803 I0420 05:59:02.671232 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:02.671210954 +0000 UTC m=+365.669978462 I0420 05:59:02.689554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:02.690052 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:02.690037775 +0000 UTC m=+365.688805273 I0420 05:59:02.696126 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:02.703836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:02.704200 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:02.704189314 +0000 UTC m=+365.702956792 I0420 05:59:02.706172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:07.602330 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:07.602314189 +0000 UTC m=+370.601081697 I0420 05:59:44.994941 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:44.994941 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 05:59:44.994926569 +0000 UTC m=+407.993694047 I0420 05:59:44.994980 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 05:59:44.99497373 +0000 UTC m=+407.993741198 I0420 05:59:44.995274 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-20 05:59:44.995267807 +0000 UTC m=+407.994035275 I0420 05:59:44.995473 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:44.995495 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 05:59:44.995492012 +0000 UTC m=+407.994259480 I0420 05:59:44.995644 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:44.995664 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-20 05:59:44.995660346 +0000 UTC m=+407.994427814 I0420 05:59:44.995788 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 05:59:44.995784749 +0000 UTC m=+407.994552217 I0420 05:59:45.029008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.029052 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 05:59:45.029044959 +0000 UTC m=+408.027812427 I0420 05:59:45.029280 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.029307 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 05:59:45.029304345 +0000 UTC m=+408.028071813 I0420 05:59:45.035490 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.035550 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:45.035567 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 05:59:45.035562534 +0000 UTC m=+408.034330002 I0420 05:59:45.139917 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.175610 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-n2gqb" condition "Approved" to 2026-04-20 05:59:45.175600479 +0000 UTC m=+408.174367957 I0420 05:59:45.195583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-n2gqb" condition "Ready" to 2026-04-20 05:59:45.195572234 +0000 UTC m=+408.194339742 I0420 05:59:45.226935 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:45.226921608 +0000 UTC m=+408.225689106 I0420 05:59:45.292575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.326712 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.342478 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-h997j" condition "Approved" to 2026-04-20 05:59:45.342462552 +0000 UTC m=+408.341230020 I0420 05:59:45.357750 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-h997j" condition "Ready" to 2026-04-20 05:59:45.357736324 +0000 UTC m=+408.356503822 I0420 05:59:45.435314 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:45.435300066 +0000 UTC m=+408.434067524 E0420 05:59:45.482632 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-zpc2r\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0420 05:59:45.585845 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:45.586308 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:45.586297242 +0000 UTC m=+408.585064740 I0420 05:59:45.989996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:46.044333 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:46.158965 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pfjkc" condition "Approved" to 2026-04-20 05:59:46.158947441 +0000 UTC m=+409.157714919 I0420 05:59:46.346698 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-pfjkc" condition "Ready" to 2026-04-20 05:59:46.34668203 +0000 UTC m=+409.345449528 I0420 05:59:46.751596 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-pfjkc" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-k4xcl" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" E0420 05:59:46.942421 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-k4xcl\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0420 05:59:46.991973 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-k9tps" condition "Approved" to 2026-04-20 05:59:46.991955482 +0000 UTC m=+409.990722980 I0420 05:59:47.349990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-k9tps" condition "Ready" to 2026-04-20 05:59:47.349976885 +0000 UTC m=+410.348744383 I0420 05:59:47.536195 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:47.536167736 +0000 UTC m=+410.534935234 I0420 05:59:47.634563 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:47.937559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:53.208157 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" condition "Ready" to 2026-04-20 05:59:53.208137811 +0000 UTC m=+416.206905289 I0420 05:59:53.208169 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:53.208394 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" condition "Issuing" to 2026-04-20 05:59:53.208377707 +0000 UTC m=+416.207145175 I0420 05:59:53.224699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:53.224770 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 05:59:53.224816 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" condition "Issuing" to 2026-04-20 05:59:53.224809457 +0000 UTC m=+416.223576925 I0420 05:59:53.462566 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-zdfw6-ndczj" condition "Approved" to 2026-04-20 05:59:53.462547613 +0000 UTC m=+416.461315081 I0420 05:59:53.492086 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-zdfw6-ndczj" condition "Ready" to 2026-04-20 05:59:53.492074014 +0000 UTC m=+416.490841492 I0420 05:59:53.521467 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:53.521445531 +0000 UTC m=+416.520213019 I0420 05:59:53.537543 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 05:59:53.537738 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 05:59:53.537732768 +0000 UTC m=+416.536500226 I0420 05:59:53.556882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-zdfw6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:00:23.319991 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 06:00:23.319967981 +0000 UTC m=+446.318735489 I0420 06:00:23.320046 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:00:23.320096 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 06:00:23.320085284 +0000 UTC m=+446.318852792 I0420 06:00:23.337405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:00:23.337523 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:00:23.337549 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 06:00:23.337541404 +0000 UTC m=+446.336308892 I0420 06:00:23.545333 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ncs9t" condition "Approved" to 2026-04-20 06:00:23.545319249 +0000 UTC m=+446.544086727 I0420 06:00:23.563870 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ncs9t" condition "Ready" to 2026-04-20 06:00:23.563852265 +0000 UTC m=+446.562619763 I0420 06:00:23.595747 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:00:23.595730941 +0000 UTC m=+446.594498429 I0420 06:00:23.618457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:00:23.618703 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:00:23.618695113 +0000 UTC m=+446.617462591 I0420 06:00:23.636259 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:00:23.636532 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:00:23.636525292 +0000 UTC m=+446.635292770 I0420 06:03:44.345282 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 06:03:44.345218135 +0000 UTC m=+647.343985653 I0420 06:03:44.345293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:03:44.345432 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 06:03:44.345413569 +0000 UTC m=+647.344181077 I0420 06:03:44.366039 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:03:44.366166 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 06:03:44.366155223 +0000 UTC m=+647.364922721 I0420 06:03:44.550041 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:03:44.578132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-b9sf7" condition "Approved" to 2026-04-20 06:03:44.578115079 +0000 UTC m=+647.576882567 I0420 06:03:44.596490 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-b9sf7" condition "Ready" to 2026-04-20 06:03:44.596478596 +0000 UTC m=+647.595246074 I0420 06:03:44.621807 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:03:44.621792729 +0000 UTC m=+647.620560207 I0420 06:03:44.645725 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:03:44.646119 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:03:44.646110847 +0000 UTC m=+647.644878325 I0420 06:03:44.662338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:03:44.662751 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:03:44.662742323 +0000 UTC m=+647.661509801 I0420 06:06:04.511988 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-20 06:06:04.511969214 +0000 UTC m=+787.510736712 I0420 06:06:04.512019 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:06:04.512087 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-20 06:06:04.512078046 +0000 UTC m=+787.510845544 I0420 06:06:04.527193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:06:04.527282 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-20 06:06:04.527271478 +0000 UTC m=+787.526038986 I0420 06:06:04.817026 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:06:04.845417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-ckpxn" condition "Approved" to 2026-04-20 06:06:04.845405936 +0000 UTC m=+787.844173404 I0420 06:06:04.864046 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-ckpxn" condition "Ready" to 2026-04-20 06:06:04.864033 +0000 UTC m=+787.862800498 I0420 06:06:04.887672 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:06:04.887658262 +0000 UTC m=+787.886425730 I0420 06:06:04.905315 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:06:04.951099 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:11.776870 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-20 06:07:11.776855871 +0000 UTC m=+854.775623349 I0420 06:07:11.776948 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:07:11.776987 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-20 06:07:11.776976184 +0000 UTC m=+854.775743682 I0420 06:07:11.794086 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:11.794143 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:07:11.794157 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-20 06:07:11.794151583 +0000 UTC m=+854.792919061 I0420 06:07:11.938545 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:11.942820 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-5hfzk" condition "Approved" to 2026-04-20 06:07:11.942804124 +0000 UTC m=+854.941571602 I0420 06:07:11.983312 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-5hfzk" condition "Ready" to 2026-04-20 06:07:11.983301198 +0000 UTC m=+854.982068666 I0420 06:07:12.010585 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:07:12.010572967 +0000 UTC m=+855.009340435 I0420 06:07:12.035488 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:12.035861 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:07:12.03585332 +0000 UTC m=+855.034620798 I0420 06:07:12.056024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:12.059660 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:07:12.060067 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:07:12.060056856 +0000 UTC m=+855.058824344 I0420 06:10:11.960599 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-20 06:10:11.960576084 +0000 UTC m=+1034.959343552 I0420 06:10:11.960622 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 06:10:11.960694 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-20 06:10:11.960684547 +0000 UTC m=+1034.959452055 I0420 06:10:11.977706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:10:11.977794 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-20 06:10:11.977786858 +0000 UTC m=+1034.976554336 I0420 06:10:12.116446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 06:10:12.144942 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-wp466" condition "Approved" to 2026-04-20 06:10:12.144928922 +0000 UTC m=+1035.143696400 I0420 06:10:12.164319 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-wp466" condition "Ready" to 2026-04-20 06:10:12.164306366 +0000 UTC m=+1035.163073844 I0420 06:10:12.203168 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 06:10:12.203151756 +0000 UTC m=+1035.201919264 I0420 06:10:12.228621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"