I0420 07:59:42.559545 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0420 07:59:42.559611 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0420 07:59:42.559658 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0420 07:59:42.561803 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0420 07:59:42.562056 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0420 07:59:42.562084 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0420 07:59:42.562145 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0420 07:59:42.563825 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0420 07:59:42.577290 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0420 07:59:42.584495 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0420 07:59:42.588749 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0420 07:59:42.591475 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0420 07:59:42.594195 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0420 07:59:42.596751 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0420 07:59:42.599274 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0420 07:59:42.605359 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0420 07:59:42.605416 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0420 07:59:42.608112 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0420 07:59:42.610538 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0420 07:59:42.612850 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0420 07:59:42.612876 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0420 07:59:42.612915 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0420 07:59:42.614716 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0420 07:59:42.616612 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0420 07:59:42.618432 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0420 07:59:42.620193 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0420 07:59:42.625446 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0420 07:59:42.625477 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0420 07:59:42.625554 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0420 07:59:42.628139 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0420 07:59:42.630656 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0420 07:59:42.633115 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0420 07:59:42.633676 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0420 07:59:42.636102 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.636208 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.636505 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.636561 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.636751 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.637202 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.637770 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.637957 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.638101 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 07:59:42.726221 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0420 08:00:00.747493 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-20 08:00:00.747270878 +0000 UTC m=+18.220484735 I0420 08:00:01.481929 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-20 08:00:01.481914499 +0000 UTC m=+18.955128356 I0420 08:00:01.482939 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:00:01.482972 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 08:00:01.482965899 +0000 UTC m=+18.956179766 E0420 08:00:01.498670 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 08:00:01.498731 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-20 08:00:01.498724762 +0000 UTC m=+18.971938599 E0420 08:00:01.498753 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 08:00:01.502904 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:01.503080 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:00:01.503155 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-20 08:00:01.503146594 +0000 UTC m=+18.976360431 E0420 08:00:01.509727 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0420 08:00:01.509796 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 08:00:01.509821 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 08:00:01.509849 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0420 08:00:01.548791 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-45f8j" condition "Approved" to 2026-04-20 08:00:01.548780637 +0000 UTC m=+19.021994474 I0420 08:00:01.617532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-45f8j" condition "Ready" to 2026-04-20 08:00:01.617523252 +0000 UTC m=+19.090737079 I0420 08:00:01.647073 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:01.647061368 +0000 UTC m=+19.120275205 I0420 08:00:01.668021 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:06.495314 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 08:00:06.495280281 +0000 UTC m=+23.968494108 I0420 08:00:06.495693 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:00:06.495712 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-20 08:00:06.495708625 +0000 UTC m=+23.968922452 I0420 08:00:06.508167 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-20 08:00:06.508155683 +0000 UTC m=+23.981369530 I0420 08:00:06.510031 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:06.51002727 +0000 UTC m=+23.983241097 I0420 08:00:06.529044 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:06.529823 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-20 08:00:06.529817569 +0000 UTC m=+24.003031396 I0420 08:00:06.915389 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:06.949940 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-827cp" condition "Approved" to 2026-04-20 08:00:06.949930192 +0000 UTC m=+24.423144029 I0420 08:00:06.978816 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-827cp" condition "Ready" to 2026-04-20 08:00:06.978806497 +0000 UTC m=+24.452020324 I0420 08:00:07.011472 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:07.011443467 +0000 UTC m=+24.484657304 I0420 08:00:07.037802 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.590931 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:00:10.590975 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-20 08:00:10.590965901 +0000 UTC m=+28.064179738 I0420 08:00:10.591093 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-20 08:00:10.591061472 +0000 UTC m=+28.064275339 E0420 08:00:10.604866 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 08:00:10.604947 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-20 08:00:10.604937622 +0000 UTC m=+28.078151459 I0420 08:00:10.605205 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 08:00:10.614043 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.614163 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-20 08:00:10.614152948 +0000 UTC m=+28.087366815 E0420 08:00:10.621316 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0420 08:00:10.622139 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0420 08:00:10.622186 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0420 08:00:10.622776 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0420 08:00:10.623210 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:00:10.623235 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-20 08:00:10.623227034 +0000 UTC m=+28.096440861 I0420 08:00:10.623438 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-20 08:00:10.623417496 +0000 UTC m=+28.096631333 I0420 08:00:10.643136 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.643195 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-20 08:00:10.643189651 +0000 UTC m=+28.116403478 I0420 08:00:10.743899 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.782730 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-ct8r5" condition "Approved" to 2026-04-20 08:00:10.782716709 +0000 UTC m=+28.255930546 I0420 08:00:10.805615 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.820412 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-ct8r5" condition "Ready" to 2026-04-20 08:00:10.820399853 +0000 UTC m=+28.293613690 I0420 08:00:10.838252 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-d7mt6" condition "Approved" to 2026-04-20 08:00:10.838240949 +0000 UTC m=+28.311454776 I0420 08:00:10.848953 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:10.84893901 +0000 UTC m=+28.322152837 I0420 08:00:10.858203 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-d7mt6" condition "Ready" to 2026-04-20 08:00:10.858189717 +0000 UTC m=+28.331403554 I0420 08:00:10.869582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.869998 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:10.869989877 +0000 UTC m=+28.343203734 I0420 08:00:10.877236 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:10.888902 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:15.622969 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:15.622953642 +0000 UTC m=+33.096167499 I0420 08:00:15.639149 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-d7mt6" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:15.639137911 +0000 UTC m=+33.112351748 I0420 08:00:15.667461 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:15.667447232 +0000 UTC m=+33.140661079 I0420 08:00:15.693266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:15.693676 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:00:15.693668324 +0000 UTC m=+33.166882141 I0420 08:00:15.711694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:00:15.713384 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:04:39.720414 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-205.nip.io-tls" condition "Ready" to 2026-04-20 08:04:39.720363655 +0000 UTC m=+297.193577512 I0420 08:04:39.720447 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-205.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:04:39.720536 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-205.nip.io-tls" condition "Issuing" to 2026-04-20 08:04:39.720527096 +0000 UTC m=+297.193740913 I0420 08:04:39.745156 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-205.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-205.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:04:39.745451 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-205.nip.io-tls" condition "Ready" to 2026-04-20 08:04:39.745433201 +0000 UTC m=+297.218647058 I0420 08:04:40.186705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-205.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-205.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:04:40.218006 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-205.nip.io-tls-kv2rd" condition "Approved" to 2026-04-20 08:04:40.217989881 +0000 UTC m=+297.691203748 I0420 08:04:40.249932 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-205.nip.io-tls-kv2rd" condition "Ready" to 2026-04-20 08:04:40.249908018 +0000 UTC m=+297.723121865 I0420 08:04:40.280837 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-205.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:04:40.280819637 +0000 UTC m=+297.754033474 I0420 08:04:40.315157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-205.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-205.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:04:40.315545 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-205.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:04:40.315537194 +0000 UTC m=+297.788751031 I0420 08:04:40.329846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-205.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-205.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:04:40.330229 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-205.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:04:40.330220152 +0000 UTC m=+297.803433989 I0420 08:05:51.396543 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:05:51.396589 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-20 08:05:51.3965789 +0000 UTC m=+368.869792767 I0420 08:05:51.396762 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 08:05:51.396740091 +0000 UTC m=+368.869953958 E0420 08:05:51.433067 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 08:05:51.435215 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-20 08:05:51.435206216 +0000 UTC m=+368.908420043 E0420 08:05:51.436643 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0420 08:05:51.433719 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:05:51.440691 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 08:05:51.440684126 +0000 UTC m=+368.913897953 E0420 08:05:51.470694 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0420 08:05:51.471389 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 08:05:51.472642 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0420 08:05:51.472777 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0420 08:05:51.478950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:05:51.479016 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-20 08:05:51.47901021 +0000 UTC m=+368.952224037 I0420 08:05:51.488046 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-x66hq" condition "Approved" to 2026-04-20 08:05:51.488031846 +0000 UTC m=+368.961245683 I0420 08:05:51.505083 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-x66hq" condition "Ready" to 2026-04-20 08:05:51.505071432 +0000 UTC m=+368.978285259 I0420 08:05:51.532773 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:05:51.532762406 +0000 UTC m=+369.005976253 I0420 08:05:51.547135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:05:51.547394 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:05:51.547385905 +0000 UTC m=+369.020599742 I0420 08:05:51.572134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:05:51.573132 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:05:51.573123785 +0000 UTC m=+369.046337622 I0420 08:05:56.472416 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:05:56.472401489 +0000 UTC m=+373.945615346 I0420 08:06:37.098384 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 08:06:37.098367374 +0000 UTC m=+414.571581201 I0420 08:06:37.098693 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:37.098713 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-20 08:06:37.098710338 +0000 UTC m=+414.571924155 I0420 08:06:37.107470 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-20 08:06:37.107463132 +0000 UTC m=+414.580676959 I0420 08:06:37.107623 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-20 08:06:37.107602603 +0000 UTC m=+414.580816430 I0420 08:06:37.107525 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:37.107759 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 08:06:37.107748494 +0000 UTC m=+414.580962321 I0420 08:06:37.107561 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:37.107958 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 08:06:37.107949905 +0000 UTC m=+414.581163732 I0420 08:06:37.131669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.135849 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-20 08:06:37.135832171 +0000 UTC m=+414.609045998 I0420 08:06:37.141737 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.141842 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:37.141875 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-20 08:06:37.141866666 +0000 UTC m=+414.615080533 I0420 08:06:37.141882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.142026 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:37.142143 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-20 08:06:37.142139348 +0000 UTC m=+414.615353175 I0420 08:06:37.340849 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.403517 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4pmqj" condition "Approved" to 2026-04-20 08:06:37.403508887 +0000 UTC m=+414.876722714 I0420 08:06:37.441759 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-4pmqj" condition "Ready" to 2026-04-20 08:06:37.44175168 +0000 UTC m=+414.914965497 I0420 08:06:37.474008 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rgvsw" condition "Approved" to 2026-04-20 08:06:37.473995438 +0000 UTC m=+414.947209305 I0420 08:06:37.479772 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:37.479762121 +0000 UTC m=+414.952975948 I0420 08:06:37.497077 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-rgvsw" condition "Ready" to 2026-04-20 08:06:37.497067328 +0000 UTC m=+414.970281145 I0420 08:06:37.513466 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.513657 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:37.513651471 +0000 UTC m=+414.986865298 I0420 08:06:37.545809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.546046 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:37.54603936 +0000 UTC m=+415.019253187 I0420 08:06:37.559354 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:37.559344209 +0000 UTC m=+415.032558036 I0420 08:06:37.614811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" E0420 08:06:37.820071 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-dnnt5\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0420 08:06:37.881102 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:37.928689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r7b8d" condition "Approved" to 2026-04-20 08:06:37.928677155 +0000 UTC m=+415.401890982 I0420 08:06:38.084936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-r7b8d" condition "Ready" to 2026-04-20 08:06:38.084925409 +0000 UTC m=+415.558139236 I0420 08:06:38.569986 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:38.623981 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:38.623966269 +0000 UTC m=+416.097180106 I0420 08:06:38.723285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:38.725278 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:38.725261686 +0000 UTC m=+416.198475513 I0420 08:06:38.924258 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:44.466900 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" condition "Ready" to 2026-04-20 08:06:44.466852496 +0000 UTC m=+421.940066333 I0420 08:06:44.467282 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:44.467320 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" condition "Issuing" to 2026-04-20 08:06:44.467311999 +0000 UTC m=+421.940525836 I0420 08:06:44.479844 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:44.481021 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:44.481053 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" condition "Issuing" to 2026-04-20 08:06:44.481045081 +0000 UTC m=+421.954258908 I0420 08:06:44.689335 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qkdwh-5ks4g" condition "Approved" to 2026-04-20 08:06:44.689322229 +0000 UTC m=+422.162536066 I0420 08:06:44.710326 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-qkdwh-5ks4g" condition "Ready" to 2026-04-20 08:06:44.710273523 +0000 UTC m=+422.183487360 I0420 08:06:44.735034 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:44.735024227 +0000 UTC m=+422.208238054 I0420 08:06:44.756574 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:44.810534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-qkdwh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:56.651612 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 08:06:56.651599339 +0000 UTC m=+434.124813166 I0420 08:06:56.651786 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:06:56.651804 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-20 08:06:56.651800721 +0000 UTC m=+434.125014548 I0420 08:06:56.676685 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:56.676837 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-20 08:06:56.676826466 +0000 UTC m=+434.150040293 I0420 08:06:56.815864 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:56.857652 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-sqgl2" condition "Approved" to 2026-04-20 08:06:56.85763627 +0000 UTC m=+434.330850097 I0420 08:06:56.882482 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-sqgl2" condition "Ready" to 2026-04-20 08:06:56.882469204 +0000 UTC m=+434.355683041 I0420 08:06:56.957167 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:56.957154305 +0000 UTC m=+434.430368132 I0420 08:06:56.986979 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:56.987261 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:56.987255056 +0000 UTC m=+434.460468883 I0420 08:06:57.001529 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:06:57.001892 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:06:57.001885985 +0000 UTC m=+434.475099822 I0420 08:08:17.010782 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 08:08:17.010751969 +0000 UTC m=+514.483965806 I0420 08:08:17.011005 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:08:17.011420 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-20 08:08:17.011031152 +0000 UTC m=+514.484244989 I0420 08:08:17.029020 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:08:17.029506 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-20 08:08:17.029498228 +0000 UTC m=+514.502712065 I0420 08:08:17.284705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:08:17.314585 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kb59h" condition "Approved" to 2026-04-20 08:08:17.314572981 +0000 UTC m=+514.787786818 I0420 08:08:17.333693 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kb59h" condition "Ready" to 2026-04-20 08:08:17.333684252 +0000 UTC m=+514.806898069 I0420 08:08:17.361209 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:08:17.361199956 +0000 UTC m=+514.834413783 I0420 08:08:17.381711 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:08:17.381950 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:08:17.381944318 +0000 UTC m=+514.855158145 I0420 08:08:17.401765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:08:17.402541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:08:17.403363 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:08:17.403355827 +0000 UTC m=+514.876569654 I0420 08:08:17.404850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:09:03.444007 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-20 08:09:03.443956068 +0000 UTC m=+560.917169915 I0420 08:09:03.444514 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:09:03.444576 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-20 08:09:03.444570643 +0000 UTC m=+560.917784480 I0420 08:09:03.468935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:09:03.469078 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0420 08:09:03.469138 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-20 08:09:03.469132304 +0000 UTC m=+560.942346131 I0420 08:09:03.730144 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:09:03.738554 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xs7cl" condition "Approved" to 2026-04-20 08:09:03.738540762 +0000 UTC m=+561.211754619 I0420 08:09:03.760441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xs7cl" condition "Ready" to 2026-04-20 08:09:03.760433393 +0000 UTC m=+561.233647210 I0420 08:09:03.790509 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:09:03.790497826 +0000 UTC m=+561.263711663 I0420 08:09:03.814676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:09:03.815463 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:09:03.815457439 +0000 UTC m=+561.288671256 I0420 08:09:03.836135 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0420 08:09:03.836389 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-20 08:09:03.836382714 +0000 UTC m=+561.309596541