I0408 01:17:19.952421 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0408 01:17:19.952540 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0408 01:17:19.952634 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0408 01:17:19.956432 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0408 01:17:19.956772 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0408 01:17:19.956886 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0408 01:17:19.957011 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0408 01:17:19.959604 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0408 01:17:19.974915 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0408 01:17:19.982624 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0408 01:17:19.988380 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0408 01:17:19.991215 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0408 01:17:19.991241 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0408 01:17:19.991240 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0408 01:17:19.991251 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0408 01:17:19.993947 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0408 01:17:19.996536 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0408 01:17:19.998762 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0408 01:17:20.000634 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0408 01:17:20.002321 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0408 01:17:20.002338 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0408 01:17:20.002401 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0408 01:17:20.007550 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0408 01:17:20.010334 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0408 01:17:20.013064 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0408 01:17:20.015811 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0408 01:17:20.015845 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0408 01:17:20.018337 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0408 01:17:20.020313 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0408 01:17:20.022502 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0408 01:17:20.024431 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0408 01:17:20.026360 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0408 01:17:20.031273 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0408 01:17:20.031312 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.035645 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.037040 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.037210 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.071310 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.093058 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.107778 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.119246 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.129067 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:20.160089 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:17:30.575183 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-08 01:17:30.575166393 +0000 UTC m=+10.656824223 I0408 01:17:31.316621 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:17:31.316689 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 01:17:31.316678954 +0000 UTC m=+11.398336814 I0408 01:17:31.316913 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-08 01:17:31.316897473 +0000 UTC m=+11.398555333 E0408 01:17:31.331836 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 01:17:31.331892 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-08 01:17:31.331886507 +0000 UTC m=+11.413544317 E0408 01:17:31.331910 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 01:17:31.333585 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:31.333644 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:17:31.333658 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 01:17:31.333653439 +0000 UTC m=+11.415311269 E0408 01:17:31.346233 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0408 01:17:31.346387 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 01:17:31.346468 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 01:17:31.346578 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0408 01:17:31.380236 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ssg9h" condition "Approved" to 2026-04-08 01:17:31.380211578 +0000 UTC m=+11.461869408 I0408 01:17:31.392837 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ssg9h" condition "Ready" to 2026-04-08 01:17:31.392829898 +0000 UTC m=+11.474487728 I0408 01:17:31.415296 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:17:31.415280834 +0000 UTC m=+11.496938694 I0408 01:17:31.434387 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:31.434981 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:17:31.434946718 +0000 UTC m=+11.516604578 I0408 01:17:31.449692 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:36.347390 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:17:36.347375768 +0000 UTC m=+16.429033598 I0408 01:17:58.407806 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 01:17:58.407765589 +0000 UTC m=+38.489423439 I0408 01:17:58.409468 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:17:58.409551 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 01:17:58.409543815 +0000 UTC m=+38.491201635 I0408 01:17:58.429815 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-08 01:17:58.429799149 +0000 UTC m=+38.511456969 I0408 01:17:58.429951 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:58.430014 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 01:17:58.430007155 +0000 UTC m=+38.511664985 I0408 01:17:58.539574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:58.568820 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gtslf" condition "Approved" to 2026-04-08 01:17:58.56880641 +0000 UTC m=+38.650464270 I0408 01:17:58.598074 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gtslf" condition "Ready" to 2026-04-08 01:17:58.598064997 +0000 UTC m=+38.679722817 I0408 01:17:58.628279 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:17:58.628265382 +0000 UTC m=+38.709923232 I0408 01:17:58.652304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:58.652684 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:17:58.652676436 +0000 UTC m=+38.734334266 I0408 01:17:58.666696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:17:58.667098 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:17:58.667090157 +0000 UTC m=+38.748747977 I0408 01:22:24.703100 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready" to 2026-04-08 01:22:24.70306911 +0000 UTC m=+304.784726970 I0408 01:22:24.703564 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:22:24.703608 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Issuing" to 2026-04-08 01:22:24.70360347 +0000 UTC m=+304.785261300 I0408 01:22:24.717559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:22:24.717631 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-169.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:22:24.717652 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Issuing" to 2026-04-08 01:22:24.717645327 +0000 UTC m=+304.799303157 I0408 01:22:24.914567 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-169.nip.io-tls-x82tt" condition "Approved" to 2026-04-08 01:22:24.914557283 +0000 UTC m=+304.996215113 I0408 01:22:24.939273 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-169.nip.io-tls-x82tt" condition "Ready" to 2026-04-08 01:22:24.939265043 +0000 UTC m=+305.020922863 I0408 01:22:24.975715 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:22:24.975704333 +0000 UTC m=+305.057362173 I0408 01:22:24.998685 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:22:24.998943 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-169.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:22:24.998938219 +0000 UTC m=+305.080596049 I0408 01:22:25.027300 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-169.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-169.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:29.453392 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-08 01:23:29.45335805 +0000 UTC m=+369.535015880 I0408 01:23:29.453840 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:23:29.453867 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-08 01:23:29.453862364 +0000 UTC m=+369.535520194 E0408 01:23:29.464125 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 01:23:29.464200 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-08 01:23:29.464191168 +0000 UTC m=+369.545848988 E0408 01:23:29.464420 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 01:23:29.466646 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:29.466719 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-08 01:23:29.466713072 +0000 UTC m=+369.548370902 E0408 01:23:29.476108 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0408 01:23:29.476346 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 01:23:29.476405 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 01:23:29.476492 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0408 01:23:29.484099 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:29.506465 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jpqbx" condition "Approved" to 2026-04-08 01:23:29.506450269 +0000 UTC m=+369.588108129 I0408 01:23:29.518972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jpqbx" condition "Ready" to 2026-04-08 01:23:29.518960187 +0000 UTC m=+369.600618017 I0408 01:23:29.541376 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:23:29.541364556 +0000 UTC m=+369.623022386 I0408 01:23:29.567275 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:29.567693 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:23:29.567683119 +0000 UTC m=+369.649340949 I0408 01:23:29.583234 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:34.477085 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:23:34.477071836 +0000 UTC m=+374.558729686 I0408 01:24:15.614619 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-08 01:24:15.614570326 +0000 UTC m=+415.696228146 I0408 01:24:15.614968 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:15.614990 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-08 01:24:15.614987947 +0000 UTC m=+415.696645757 I0408 01:24:15.627851 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-08 01:24:15.627836892 +0000 UTC m=+415.709494712 I0408 01:24:15.628213 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:15.628268 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-08 01:24:15.628260223 +0000 UTC m=+415.709918043 I0408 01:24:15.648321 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 01:24:15.648305264 +0000 UTC m=+415.729963074 I0408 01:24:15.648568 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:15.648605 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-08 01:24:15.648598672 +0000 UTC m=+415.730256492 I0408 01:24:15.677470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:15.677470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:15.677563 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-08 01:24:15.677555425 +0000 UTC m=+415.759213235 I0408 01:24:15.678324 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-08 01:24:15.678306394 +0000 UTC m=+415.759964254 I0408 01:24:15.689592 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:15.690286 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-08 01:24:15.690277305 +0000 UTC m=+415.771935125 I0408 01:24:15.856073 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:15.892889 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2ddcm" condition "Approved" to 2026-04-08 01:24:15.892872243 +0000 UTC m=+415.974530083 I0408 01:24:15.922066 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:15.929944 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-2ddcm" condition "Ready" to 2026-04-08 01:24:15.929930257 +0000 UTC m=+416.011588087 I0408 01:24:15.975829 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:15.97582055 +0000 UTC m=+416.057478370 I0408 01:24:16.001684 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:16.002235 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:16.002225317 +0000 UTC m=+416.083883177 I0408 01:24:16.022539 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:16.104552 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:16.135011 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-nrnc8" condition "Approved" to 2026-04-08 01:24:16.134992681 +0000 UTC m=+416.216650611 I0408 01:24:16.193605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-nrnc8" condition "Ready" to 2026-04-08 01:24:16.193593671 +0000 UTC m=+416.275251491 I0408 01:24:16.343038 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:16.343016277 +0000 UTC m=+416.424674137 I0408 01:24:16.424914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:16.859450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-q8gvd" condition "Approved" to 2026-04-08 01:24:16.859427594 +0000 UTC m=+416.941085444 I0408 01:24:16.889535 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-q8gvd" condition "Ready" to 2026-04-08 01:24:16.889523605 +0000 UTC m=+416.971181435 E0408 01:24:17.344501 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-7mhnh\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0408 01:24:17.747557 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" resource_name="grafana-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="grafana-tls-q8gvd" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="grafana-tls-54nwk" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0408 01:24:17.784627 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-6tx8q" condition "Approved" to 2026-04-08 01:24:17.784614869 +0000 UTC m=+417.866272699 I0408 01:24:17.801872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-6tx8q" condition "Ready" to 2026-04-08 01:24:17.801857845 +0000 UTC m=+417.883515675 I0408 01:24:18.079069 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:18.079054295 +0000 UTC m=+418.160712125 I0408 01:24:18.149600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:18.150029 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:18.150020697 +0000 UTC m=+418.231678527 I0408 01:24:18.401461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:18.452378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:24.882489 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" condition "Ready" to 2026-04-08 01:24:24.882444512 +0000 UTC m=+424.964102372 I0408 01:24:24.882737 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:24.882813 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" condition "Issuing" to 2026-04-08 01:24:24.882797501 +0000 UTC m=+424.964455351 I0408 01:24:24.894582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:24.894664 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:24.894688 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" condition "Issuing" to 2026-04-08 01:24:24.894680784 +0000 UTC m=+424.976338604 I0408 01:24:25.070638 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-hmgdb-cfw4z" condition "Approved" to 2026-04-08 01:24:25.070621502 +0000 UTC m=+425.152279322 I0408 01:24:25.088318 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-hmgdb-cfw4z" condition "Ready" to 2026-04-08 01:24:25.088303281 +0000 UTC m=+425.169961111 I0408 01:24:25.110627 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:25.110612369 +0000 UTC m=+425.192270199 I0408 01:24:25.128168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:25.165669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-hmgdb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:44.427783 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-08 01:24:44.427761892 +0000 UTC m=+444.509419702 I0408 01:24:44.427966 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:44.428026 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 01:24:44.428012448 +0000 UTC m=+444.509670308 I0408 01:24:44.485593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:44.485685 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:44.485707 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-08 01:24:44.485696716 +0000 UTC m=+444.567354576 I0408 01:24:45.090414 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:45.104305 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xrm87" condition "Approved" to 2026-04-08 01:24:45.104289938 +0000 UTC m=+445.185947778 I0408 01:24:45.122868 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xrm87" condition "Ready" to 2026-04-08 01:24:45.12285401 +0000 UTC m=+445.204511840 I0408 01:24:45.158974 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:45.15896147 +0000 UTC m=+445.240619290 I0408 01:24:45.191551 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:45.192951 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:45.192943299 +0000 UTC m=+445.274601129 I0408 01:24:45.212785 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:45.213686 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:45.213674714 +0000 UTC m=+445.295332544 I0408 01:28:05.315997 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:28:05.316084 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-08 01:28:05.316072909 +0000 UTC m=+645.397730739 I0408 01:28:05.316345 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-08 01:28:05.316324823 +0000 UTC m=+645.397982653 I0408 01:28:05.334046 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:28:05.334108 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-08 01:28:05.33409947 +0000 UTC m=+645.415757300 I0408 01:28:05.476717 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:28:05.511322 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-rgz54" condition "Approved" to 2026-04-08 01:28:05.511312667 +0000 UTC m=+645.592970487 I0408 01:28:05.542371 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-rgz54" condition "Ready" to 2026-04-08 01:28:05.542360112 +0000 UTC m=+645.624017942 I0408 01:28:05.574371 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:28:05.574351396 +0000 UTC m=+645.656009216 I0408 01:28:05.612850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:28:05.613133 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:28:05.613126683 +0000 UTC m=+645.694784503 I0408 01:28:05.653564 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:28:05.669968 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:28:48.667613 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-08 01:28:48.667568672 +0000 UTC m=+688.749226502 I0408 01:28:48.668172 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:28:48.668234 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-08 01:28:48.668229945 +0000 UTC m=+688.749887775 I0408 01:28:48.685543 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:28:48.685633 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:28:48.685659 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-08 01:28:48.685651598 +0000 UTC m=+688.767309428 I0408 01:28:48.859525 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-hkchn" condition "Approved" to 2026-04-08 01:28:48.859515196 +0000 UTC m=+688.941173016 I0408 01:28:48.880122 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-hkchn" condition "Ready" to 2026-04-08 01:28:48.88011017 +0000 UTC m=+688.961767990 I0408 01:28:48.919106 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:28:48.919087256 +0000 UTC m=+689.000745116 I0408 01:28:48.950960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"