I0417 10:53:51.055972 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0417 10:53:51.056112 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0417 10:53:51.056211 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0417 10:53:51.061417 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0417 10:53:51.062036 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0417 10:53:51.062119 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0417 10:53:51.062234 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0417 10:53:51.065710 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0417 10:53:51.077876 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0417 10:53:51.081270 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0417 10:53:51.083837 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0417 10:53:51.088378 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0417 10:53:51.088443 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0417 10:53:51.088502 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0417 10:53:51.088932 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0417 10:53:51.091990 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0417 10:53:51.094548 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0417 10:53:51.097064 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0417 10:53:51.099532 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0417 10:53:51.102034 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0417 10:53:51.105177 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0417 10:53:51.108358 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0417 10:53:51.108933 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0417 10:53:51.113370 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0417 10:53:51.116256 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0417 10:53:51.116308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0417 10:53:51.116340 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0417 10:53:51.118867 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0417 10:53:51.122171 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0417 10:53:51.124857 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0417 10:53:51.126532 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0417 10:53:51.128546 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0417 10:53:51.130606 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0417 10:53:51.133722 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.135193 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.135339 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.135825 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.149656 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.165858 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.180286 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.197985 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.213201 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:53:51.232476 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0417 10:54:09.674710 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-17 10:54:09.674607873 +0000 UTC m=+18.649990163 I0417 10:54:10.522381 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 10:54:10.522419 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-17 10:54:10.522413842 +0000 UTC m=+19.497796092 I0417 10:54:10.523112 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-17 10:54:10.523096719 +0000 UTC m=+19.498478999 E0417 10:54:10.573413 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 10:54:10.573535 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-17 10:54:10.573527938 +0000 UTC m=+19.548910198 E0417 10:54:10.573578 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 10:54:10.599121 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:10.599191 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-17 10:54:10.599185753 +0000 UTC m=+19.574568003 E0417 10:54:10.655439 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0417 10:54:10.655565 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 10:54:10.655606 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 10:54:10.655640 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0417 10:54:10.701157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:10.772997 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-cvp5l" condition "Approved" to 2026-04-17 10:54:10.772988917 +0000 UTC m=+19.748371167 I0417 10:54:10.834869 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-cvp5l" condition "Ready" to 2026-04-17 10:54:10.834856651 +0000 UTC m=+19.810238921 I0417 10:54:10.943267 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:10.943152015 +0000 UTC m=+19.918534305 I0417 10:54:10.991172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:15.656458 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:15.656444363 +0000 UTC m=+24.631826623 I0417 10:54:24.020946 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 10:54:24.020957 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-17 10:54:24.020866034 +0000 UTC m=+32.996248344 I0417 10:54:24.021010 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 10:54:24.021000555 +0000 UTC m=+32.996382815 I0417 10:54:24.033697 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-17 10:54:24.033689987 +0000 UTC m=+33.009072237 I0417 10:54:24.050930 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:24.051011 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 10:54:24.051174 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-17 10:54:24.051166164 +0000 UTC m=+33.026548414 I0417 10:54:24.234450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:24.245879 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6kstm" condition "Approved" to 2026-04-17 10:54:24.245868599 +0000 UTC m=+33.221250859 I0417 10:54:24.282046 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-6kstm" condition "Ready" to 2026-04-17 10:54:24.282034045 +0000 UTC m=+33.257416305 I0417 10:54:24.319288 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:24.319278052 +0000 UTC m=+33.294660302 I0417 10:54:24.354875 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:24.355118 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:24.355110645 +0000 UTC m=+33.330492895 I0417 10:54:24.377754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:24.378460 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:24.378452909 +0000 UTC m=+33.353835159 I0417 10:54:24.380943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.199874 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 10:54:28.199905 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-17 10:54:28.199898083 +0000 UTC m=+37.175280333 I0417 10:54:28.200220 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-17 10:54:28.200205326 +0000 UTC m=+37.175587676 E0417 10:54:28.215522 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 10:54:28.215577 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-17 10:54:28.215571752 +0000 UTC m=+37.190954012 I0417 10:54:28.215596 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0417 10:54:28.232175 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0417 10:54:28.232494 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0417 10:54:28.232528 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0417 10:54:28.232573 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0417 10:54:28.232960 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.233005 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 10:54:28.233021 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-17 10:54:28.233017258 +0000 UTC m=+37.208399508 I0417 10:54:28.261492 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 10:54:28.261679 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-17 10:54:28.26167207 +0000 UTC m=+37.237054320 I0417 10:54:28.262022 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-17 10:54:28.261515028 +0000 UTC m=+37.236897278 I0417 10:54:28.307377 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.307428 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-17 10:54:28.307421654 +0000 UTC m=+37.282803914 I0417 10:54:28.489662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-mnwnv" condition "Approved" to 2026-04-17 10:54:28.489647434 +0000 UTC m=+37.465029724 I0417 10:54:28.533251 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-mnwnv" condition "Ready" to 2026-04-17 10:54:28.533235668 +0000 UTC m=+37.508617918 I0417 10:54:28.546494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.568846 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:28.568836096 +0000 UTC m=+37.544218356 I0417 10:54:28.576949 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-xshws" condition "Approved" to 2026-04-17 10:54:28.576937663 +0000 UTC m=+37.552319923 I0417 10:54:28.595666 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.596040 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:28.596032484 +0000 UTC m=+37.571414744 I0417 10:54:28.602759 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.603691 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-xshws" condition "Ready" to 2026-04-17 10:54:28.603685887 +0000 UTC m=+37.579068137 I0417 10:54:28.617848 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:28.618182 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:28.618175924 +0000 UTC m=+37.593558184 I0417 10:54:33.233239 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:33.233226693 +0000 UTC m=+42.208608983 I0417 10:54:33.248648 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-xshws" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:33.248641688 +0000 UTC m=+42.224023948 I0417 10:54:33.278300 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 10:54:33.278287386 +0000 UTC m=+42.253669646 I0417 10:54:33.300783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 10:54:33.453329 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:00:29.693670 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-78.nip.io-tls" condition "Ready" to 2026-04-17 11:00:29.693641669 +0000 UTC m=+398.669023919 I0417 11:00:29.694044 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-78.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:00:29.694057 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-78.nip.io-tls" condition "Issuing" to 2026-04-17 11:00:29.694054805 +0000 UTC m=+398.669437055 I0417 11:00:29.745228 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-78.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-78.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:00:29.745314 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-78.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:00:29.745332 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-78.nip.io-tls" condition "Issuing" to 2026-04-17 11:00:29.745324959 +0000 UTC m=+398.720707219 I0417 11:00:29.938992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-78.nip.io-tls-7nlnd" condition "Approved" to 2026-04-17 11:00:29.938981939 +0000 UTC m=+398.914364189 I0417 11:00:29.965115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-78.nip.io-tls-7nlnd" condition "Ready" to 2026-04-17 11:00:29.965102013 +0000 UTC m=+398.940484273 I0417 11:00:30.008442 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-78.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:00:30.008426907 +0000 UTC m=+398.983809197 I0417 11:00:30.066560 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-78.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-78.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:00:30.189494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-78.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-78.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:02:06.058220 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:02:06.058256 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-17 11:02:06.058244901 +0000 UTC m=+495.033627161 I0417 11:02:06.059046 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-17 11:02:06.059025172 +0000 UTC m=+495.034407452 I0417 11:02:06.082005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:02:06.082229 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:02:06.082254 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-17 11:02:06.082248707 +0000 UTC m=+495.057630957 E0417 11:02:06.087805 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0417 11:02:06.087942 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-17 11:02:06.087932314 +0000 UTC m=+495.063314584 E0417 11:02:06.088030 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 11:02:06.102262 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0417 11:02:06.104149 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 11:02:06.104199 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0417 11:02:06.104255 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0417 11:02:06.136286 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hf57j" condition "Approved" to 2026-04-17 11:02:06.136276901 +0000 UTC m=+495.111659151 I0417 11:02:06.197301 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hf57j" condition "Ready" to 2026-04-17 11:02:06.197288919 +0000 UTC m=+495.172671189 I0417 11:02:06.261716 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:02:06.261701013 +0000 UTC m=+495.237083293 I0417 11:02:06.326815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:02:06.327248 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:02:06.327238553 +0000 UTC m=+495.302620843 I0417 11:02:06.408163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:02:11.107263 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:02:11.107254258 +0000 UTC m=+500.082636508 I0417 11:03:11.102683 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:03:11.102780 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 11:03:11.102742197 +0000 UTC m=+560.078124457 I0417 11:03:11.103048 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-17 11:03:11.103033101 +0000 UTC m=+560.078415361 I0417 11:03:11.105704 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:03:11.106931 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-17 11:03:11.106928222 +0000 UTC m=+560.082310472 I0417 11:03:11.106739 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-17 11:03:11.106732039 +0000 UTC m=+560.082114279 I0417 11:03:11.153338 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:03:11.153374 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-17 11:03:11.153368018 +0000 UTC m=+560.128750278 I0417 11:03:11.153641 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 11:03:11.153627021 +0000 UTC m=+560.129009301 I0417 11:03:11.164795 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.165469 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:03:11.165536 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-17 11:03:11.165529116 +0000 UTC m=+560.140911386 I0417 11:03:11.167608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.167704 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:03:11.167728 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-17 11:03:11.167722965 +0000 UTC m=+560.143105215 I0417 11:03:11.188318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.188386 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-17 11:03:11.188379274 +0000 UTC m=+560.163761534 I0417 11:03:11.332689 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.341401 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-xn29h" condition "Approved" to 2026-04-17 11:03:11.341385711 +0000 UTC m=+560.316767971 I0417 11:03:11.361127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-xn29h" condition "Ready" to 2026-04-17 11:03:11.361116268 +0000 UTC m=+560.336498518 I0417 11:03:11.393552 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:03:11.393543221 +0000 UTC m=+560.368925481 I0417 11:03:11.416800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.417068 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:03:11.417062258 +0000 UTC m=+560.392444518 I0417 11:03:11.457470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.466701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.488515 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-l2qm2" condition "Approved" to 2026-04-17 11:03:11.48850624 +0000 UTC m=+560.463888490 I0417 11:03:11.504631 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-l2qm2" condition "Ready" to 2026-04-17 11:03:11.50461666 +0000 UTC m=+560.479998940 I0417 11:03:11.535957 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:03:11.535944659 +0000 UTC m=+560.511326909 I0417 11:03:11.568944 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.569383 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:03:11.569377315 +0000 UTC m=+560.544759565 I0417 11:03:11.736540 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:11.991516 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5lrc5" condition "Approved" to 2026-04-17 11:03:11.991499082 +0000 UTC m=+560.966881342 I0417 11:03:12.101939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-5lrc5" condition "Ready" to 2026-04-17 11:03:12.101921432 +0000 UTC m=+561.077303702 I0417 11:03:12.988470 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:03:12.988450792 +0000 UTC m=+561.963833072 I0417 11:03:13.055231 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:13.055684 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:03:13.055675248 +0000 UTC m=+562.031057508 I0417 11:03:13.065032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:03:13.078689 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:04:33.266029 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" condition "Ready" to 2026-04-17 11:04:33.266012713 +0000 UTC m=+642.241394973 I0417 11:04:33.266606 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:04:33.268084 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" condition "Issuing" to 2026-04-17 11:04:33.266628567 +0000 UTC m=+642.242010837 I0417 11:04:33.306105 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:04:33.306184 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:04:33.306205 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" condition "Issuing" to 2026-04-17 11:04:33.30619985 +0000 UTC m=+642.281582100 I0417 11:04:34.564647 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qm6cg-w8ngk" condition "Approved" to 2026-04-17 11:04:34.564633571 +0000 UTC m=+643.540015821 I0417 11:04:34.570945 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:04:34.600865 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qm6cg-w8ngk" condition "Ready" to 2026-04-17 11:04:34.600854939 +0000 UTC m=+643.576237199 I0417 11:04:34.652677 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:04:34.652662656 +0000 UTC m=+643.628044916 I0417 11:04:34.682510 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qm6cg-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:05:20.457931 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-17 11:05:20.457912672 +0000 UTC m=+689.433294922 I0417 11:05:20.457960 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:05:20.458007 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 11:05:20.457995375 +0000 UTC m=+689.433377635 I0417 11:05:20.532493 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:05:20.532626 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:05:20.532719 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-17 11:05:20.53270882 +0000 UTC m=+689.508091090 I0417 11:05:21.073753 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-pvb2f" condition "Approved" to 2026-04-17 11:05:21.073744242 +0000 UTC m=+690.049126492 I0417 11:05:21.135656 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-pvb2f" condition "Ready" to 2026-04-17 11:05:21.135643791 +0000 UTC m=+690.111026051 I0417 11:05:21.209138 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:05:21.209122437 +0000 UTC m=+690.184504697 I0417 11:05:21.237135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:08:00.253900 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:08:00.254003 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-17 11:08:00.253966913 +0000 UTC m=+849.229349203 I0417 11:08:00.254624 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-17 11:08:00.25460323 +0000 UTC m=+849.229985510 I0417 11:08:00.370224 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:08:00.370334 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-17 11:08:00.370326599 +0000 UTC m=+849.345708849 I0417 11:08:00.515037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:08:00.658933 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-t4595" condition "Approved" to 2026-04-17 11:08:00.658919335 +0000 UTC m=+849.634301585 I0417 11:08:00.803993 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-t4595" condition "Ready" to 2026-04-17 11:08:00.803981182 +0000 UTC m=+849.779363452 I0417 11:08:00.952928 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:08:00.952908811 +0000 UTC m=+849.928291091 I0417 11:08:01.054786 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:08:01.055198 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:08:01.055190927 +0000 UTC m=+850.030573187 I0417 11:08:01.199084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:09:06.679662 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-17 11:09:06.679617431 +0000 UTC m=+915.654999721 I0417 11:09:06.679718 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:09:06.679735 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-17 11:09:06.679730653 +0000 UTC m=+915.655112933 I0417 11:09:06.696145 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0417 11:09:06.696222 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0417 11:09:06.696237 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-17 11:09:06.696231796 +0000 UTC m=+915.671614066 I0417 11:09:06.958818 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nktp9" condition "Approved" to 2026-04-17 11:09:06.958800535 +0000 UTC m=+915.934182825 I0417 11:09:06.980141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nktp9" condition "Ready" to 2026-04-17 11:09:06.980129353 +0000 UTC m=+915.955511623 I0417 11:09:07.016034 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-17 11:09:07.016020507 +0000 UTC m=+915.991402767 I0417 11:09:07.036494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"