I0325 21:06:49.726025 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0325 21:06:49.726185 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0325 21:06:49.726273 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0325 21:06:49.730507 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0325 21:06:49.730994 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0325 21:06:49.731094 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0325 21:06:49.731120 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0325 21:06:49.733849 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0325 21:06:49.752196 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0325 21:06:49.761143 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0325 21:06:49.765579 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0325 21:06:49.768487 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0325 21:06:49.768692 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0325 21:06:49.771571 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0325 21:06:49.771631 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0325 21:06:49.771657 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0325 21:06:49.771763 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0325 21:06:49.774994 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0325 21:06:49.777611 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0325 21:06:49.783621 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0325 21:06:49.787602 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0325 21:06:49.789819 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0325 21:06:49.791780 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0325 21:06:49.793704 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0325 21:06:49.795661 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0325 21:06:49.797334 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0325 21:06:49.797413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0325 21:06:49.799590 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0325 21:06:49.801788 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0325 21:06:49.807860 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0325 21:06:49.811901 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0325 21:06:49.812030 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0325 21:06:49.814940 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0325 21:06:49.817826 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.818946 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.819065 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.819156 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.819420 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.819676 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.819931 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.819697 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.820626 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:06:49.908223 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0325 21:07:05.152563 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-25 21:07:05.152541486 +0000 UTC m=+15.463011561 I0325 21:07:05.852346 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:07:05.852333567 +0000 UTC m=+16.162803622 I0325 21:07:05.852525 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:07:05.852620 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-25 21:07:05.852608623 +0000 UTC m=+16.163078698 E0325 21:07:05.937156 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:07:05.937385 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-25 21:07:05.93736841 +0000 UTC m=+16.247838495 E0325 21:07:05.937554 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:07:05.940718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:05.940822 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:07:05.940807177 +0000 UTC m=+16.251277272 E0325 21:07:05.955026 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0325 21:07:05.955428 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:07:05.955534 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:07:05.955633 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0325 21:07:05.963934 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:05.964031 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-25 21:07:05.964015327 +0000 UTC m=+16.274485412 I0325 21:07:05.966661 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-kl7v6" condition "Approved" to 2026-03-25 21:07:05.966644212 +0000 UTC m=+16.277114287 I0325 21:07:06.001605 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-kl7v6" condition "Ready" to 2026-03-25 21:07:06.001596085 +0000 UTC m=+16.312066130 I0325 21:07:06.029399 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:06.029385619 +0000 UTC m=+16.339855694 I0325 21:07:06.047209 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:10.955660 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:10.955644642 +0000 UTC m=+21.266114727 I0325 21:07:35.049064 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:07:35.049113 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-25 21:07:35.049104911 +0000 UTC m=+45.359574966 I0325 21:07:35.051461 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-25 21:07:35.05144205 +0000 UTC m=+45.361912145 I0325 21:07:35.065924 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-25 21:07:35.065909801 +0000 UTC m=+45.376379856 I0325 21:07:35.072096 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:35.072179 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-25 21:07:35.072171168 +0000 UTC m=+45.382641243 I0325 21:07:35.141503 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:35.177003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gtff5" condition "Approved" to 2026-03-25 21:07:35.176983846 +0000 UTC m=+45.487453941 I0325 21:07:35.202539 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gtff5" condition "Ready" to 2026-03-25 21:07:35.202510653 +0000 UTC m=+45.512980738 I0325 21:07:35.236110 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:35.236093012 +0000 UTC m=+45.546563087 I0325 21:07:35.258817 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:35.259733 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:35.259718552 +0000 UTC m=+45.570188637 I0325 21:07:35.276957 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:35.278035 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:07:35.278464 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:07:35.27845318 +0000 UTC m=+45.588923235 I0325 21:09:53.579701 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:53.579782 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-25 21:09:53.579772957 +0000 UTC m=+183.890243032 I0325 21:09:53.579815 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-25 21:09:53.579793308 +0000 UTC m=+183.890263383 E0325 21:09:53.599301 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:09:53.599397 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-25 21:09:53.5993834 +0000 UTC m=+183.909853475 I0325 21:09:53.599483 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:09:53.601327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:53.601548 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-25 21:09:53.601535164 +0000 UTC m=+183.912005219 E0325 21:09:53.609857 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0325 21:09:53.609975 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0325 21:09:53.610011 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0325 21:09:53.610048 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0325 21:09:53.613987 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:53.614021 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 21:09:53.614012157 +0000 UTC m=+183.924482212 I0325 21:09:53.614032 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-25 21:09:53.614017677 +0000 UTC m=+183.924487732 I0325 21:09:53.627980 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:53.628090 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:09:53.628129 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-25 21:09:53.628115481 +0000 UTC m=+183.938585556 I0325 21:09:53.684405 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:53.710141 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-jlxqv" condition "Approved" to 2026-03-25 21:09:53.710121401 +0000 UTC m=+184.020591486 I0325 21:09:53.739264 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-jlxqv" condition "Ready" to 2026-03-25 21:09:53.739246382 +0000 UTC m=+184.049716437 I0325 21:09:53.770979 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:53.770963368 +0000 UTC m=+184.081433443 I0325 21:09:53.791127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:53.791488 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:53.791477974 +0000 UTC m=+184.101948039 I0325 21:09:53.809578 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:53.809925 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:53.809915606 +0000 UTC m=+184.120385691 I0325 21:09:53.874182 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-chkkn" condition "Approved" to 2026-03-25 21:09:53.874163179 +0000 UTC m=+184.184633234 I0325 21:09:53.892921 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-chkkn" condition "Ready" to 2026-03-25 21:09:53.89290275 +0000 UTC m=+184.203372805 I0325 21:09:58.610534 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:58.610517381 +0000 UTC m=+188.920987466 I0325 21:09:58.626089 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-chkkn" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:58.626076222 +0000 UTC m=+188.936546257 I0325 21:09:58.656338 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:58.656320441 +0000 UTC m=+188.966790526 I0325 21:09:58.673971 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:58.674747 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:58.674737164 +0000 UTC m=+188.985207219 I0325 21:09:58.697617 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:09:58.698013 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:09:58.698001998 +0000 UTC m=+189.008472083 I0325 21:12:31.360899 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-62.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:12:31.360942 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-62.nip.io-tls" condition "Issuing" to 2026-03-25 21:12:31.360932714 +0000 UTC m=+341.671402789 I0325 21:12:31.361187 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-62.nip.io-tls" condition "Ready" to 2026-03-25 21:12:31.36117803 +0000 UTC m=+341.671648105 I0325 21:12:31.378471 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:31.378537 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-62.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:12:31.378561 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-62.nip.io-tls" condition "Issuing" to 2026-03-25 21:12:31.378555075 +0000 UTC m=+341.689025130 I0325 21:12:31.497956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:31.506809 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-62.nip.io-tls-nchvj" condition "Approved" to 2026-03-25 21:12:31.506797841 +0000 UTC m=+341.817267876 I0325 21:12:31.525427 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-62.nip.io-tls-nchvj" condition "Ready" to 2026-03-25 21:12:31.525411829 +0000 UTC m=+341.835881904 I0325 21:12:31.554193 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-62.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:31.55417684 +0000 UTC m=+341.864646915 I0325 21:12:31.582823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:12:31.583354 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-62.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:12:31.583342441 +0000 UTC m=+341.893812526 I0325 21:12:31.606403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-62.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-62.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:41.858828 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:41.858867 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 21:13:41.858857979 +0000 UTC m=+412.169328034 I0325 21:13:41.858835 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-25 21:13:41.858812988 +0000 UTC m=+412.169283073 E0325 21:13:41.872655 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:13:41.872751 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-25 21:13:41.872743218 +0000 UTC m=+412.183213263 E0325 21:13:41.872871 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0325 21:13:41.874975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:41.875080 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:13:41.875134 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-25 21:13:41.875124758 +0000 UTC m=+412.185594823 E0325 21:13:41.880820 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0325 21:13:41.880891 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:13:41.880913 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0325 21:13:41.880943 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0325 21:13:41.911164 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-brv66" condition "Approved" to 2026-03-25 21:13:41.911152341 +0000 UTC m=+412.221622396 I0325 21:13:41.923441 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-brv66" condition "Ready" to 2026-03-25 21:13:41.923425358 +0000 UTC m=+412.233895443 I0325 21:13:41.943699 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:41.943683127 +0000 UTC m=+412.254153212 I0325 21:13:41.963033 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:13:46.881303 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:13:46.881289629 +0000 UTC m=+417.191759704 I0325 21:14:24.453369 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-25 21:14:24.453355154 +0000 UTC m=+454.763825239 I0325 21:14:24.456307 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:24.456491 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-25 21:14:24.456485102 +0000 UTC m=+454.766955167 I0325 21:14:24.456629 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:24.456661 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-25 21:14:24.456654907 +0000 UTC m=+454.767124952 I0325 21:14:24.457037 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:24.457058 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-25 21:14:24.457054256 +0000 UTC m=+454.767524311 I0325 21:14:24.456424 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 21:14:24.456417481 +0000 UTC m=+454.766887526 I0325 21:14:24.457246 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-25 21:14:24.457241272 +0000 UTC m=+454.767711327 I0325 21:14:24.488208 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:24.488289 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:24.488308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:24.488316 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-25 21:14:24.488309381 +0000 UTC m=+454.798779436 I0325 21:14:24.488444 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-25 21:14:24.488431774 +0000 UTC m=+454.798901859 I0325 21:14:24.496760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:24.496864 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:24.496900 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-25 21:14:24.496890776 +0000 UTC m=+454.807360861 I0325 21:14:24.678368 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:24.713633 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ksxtr" condition "Approved" to 2026-03-25 21:14:24.713620769 +0000 UTC m=+455.024090854 I0325 21:14:24.733982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ksxtr" condition "Ready" to 2026-03-25 21:14:24.733970499 +0000 UTC m=+455.044440554 I0325 21:14:24.781934 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:24.781926331 +0000 UTC m=+455.092396376 I0325 21:14:24.793558 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-t7p5w" condition "Approved" to 2026-03-25 21:14:24.793551354 +0000 UTC m=+455.104021409 I0325 21:14:24.804855 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-sf7w9" condition "Approved" to 2026-03-25 21:14:24.804843417 +0000 UTC m=+455.115313472 I0325 21:14:24.810527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:24.810837 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:24.810829997 +0000 UTC m=+455.121300052 I0325 21:14:24.816431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-t7p5w" condition "Ready" to 2026-03-25 21:14:24.816423127 +0000 UTC m=+455.126893182 I0325 21:14:24.821702 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-sf7w9" condition "Ready" to 2026-03-25 21:14:24.821682299 +0000 UTC m=+455.132152444 I0325 21:14:25.045931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:25.046393 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:25.046382312 +0000 UTC m=+455.356852387 I0325 21:14:25.410485 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:25.410469501 +0000 UTC m=+455.720939566 I0325 21:14:25.447752 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:25.447740454 +0000 UTC m=+455.758210499 I0325 21:14:25.595414 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:25.595785 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:25.595779147 +0000 UTC m=+455.906249192 I0325 21:14:25.712970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:25.713268 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:25.713262052 +0000 UTC m=+456.023732097 I0325 21:14:25.995054 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:26.095994 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:33.681405 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:14:33.681435 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" condition "Issuing" to 2026-03-25 21:14:33.681428011 +0000 UTC m=+463.991898066 I0325 21:14:33.681681 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" condition "Ready" to 2026-03-25 21:14:33.681650986 +0000 UTC m=+463.992121081 I0325 21:14:33.699577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-vth5l-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:33.699684 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" condition "Ready" to 2026-03-25 21:14:33.699673988 +0000 UTC m=+464.010144073 I0325 21:14:33.783400 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-vth5l-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:33.810986 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-vth5l-kgnl6" condition "Approved" to 2026-03-25 21:14:33.810971057 +0000 UTC m=+464.121441112 I0325 21:14:33.837146 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-vth5l-kgnl6" condition "Ready" to 2026-03-25 21:14:33.837135843 +0000 UTC m=+464.147605898 I0325 21:14:33.862255 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:33.862242292 +0000 UTC m=+464.172712347 I0325 21:14:33.883949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-vth5l-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:14:33.884145 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:14:33.884138501 +0000 UTC m=+464.194608546 I0325 21:14:33.904804 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-vth5l-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-vth5l-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:11.665481 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:15:11.665520 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-25 21:15:11.665509884 +0000 UTC m=+501.975979969 I0325 21:15:11.665975 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 21:15:11.665967535 +0000 UTC m=+501.976437620 I0325 21:15:11.680409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:11.680482 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-25 21:15:11.680474269 +0000 UTC m=+501.990944324 I0325 21:15:11.968218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:11.994373 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mnj8w" condition "Approved" to 2026-03-25 21:15:11.994359434 +0000 UTC m=+502.304829489 I0325 21:15:12.012268 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mnj8w" condition "Ready" to 2026-03-25 21:15:12.012252502 +0000 UTC m=+502.322722557 I0325 21:15:12.040403 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:15:12.040386428 +0000 UTC m=+502.350856493 I0325 21:15:12.065252 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.065672 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:15:12.065664721 +0000 UTC m=+502.376134776 I0325 21:15:12.081655 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:15:12.082004 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:15:12.08199575 +0000 UTC m=+502.392465795 I0325 21:18:46.827212 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-25 21:18:46.827193889 +0000 UTC m=+717.137663944 I0325 21:18:46.827205 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:18:46.827278 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-25 21:18:46.827268831 +0000 UTC m=+717.137738906 I0325 21:18:46.844490 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:18:46.844557 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-25 21:18:46.844551404 +0000 UTC m=+717.155021459 I0325 21:18:47.008643 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:18:47.036743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-v2mrz" condition "Approved" to 2026-03-25 21:18:47.036732248 +0000 UTC m=+717.347202293 I0325 21:18:47.056322 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-v2mrz" condition "Ready" to 2026-03-25 21:18:47.056309429 +0000 UTC m=+717.366779484 I0325 21:18:47.082822 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:18:47.082809112 +0000 UTC m=+717.393279167 I0325 21:18:47.102281 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:18:47.105971 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:18:47.105960222 +0000 UTC m=+717.416430277 I0325 21:18:47.108101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:18:47.121190 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:18:47.121449 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:18:47.12144259 +0000 UTC m=+717.431912645 I0325 21:18:47.124783 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:21:10.058537 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:21:10.058652 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-25 21:21:10.058644819 +0000 UTC m=+860.369114864 I0325 21:21:10.058857 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-25 21:21:10.058843814 +0000 UTC m=+860.369313869 I0325 21:21:10.073850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:21:10.073917 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:21:10.073937 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-25 21:21:10.073930671 +0000 UTC m=+860.384400726 I0325 21:21:10.275679 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-rqxwv" condition "Approved" to 2026-03-25 21:21:10.275668362 +0000 UTC m=+860.586138417 I0325 21:21:10.291434 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-rqxwv" condition "Ready" to 2026-03-25 21:21:10.291410427 +0000 UTC m=+860.601880502 I0325 21:21:10.323477 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:21:10.323460579 +0000 UTC m=+860.633930654 I0325 21:21:10.346059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:21:10.346513 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:21:10.346503066 +0000 UTC m=+860.656973121 I0325 21:21:10.369379 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:22:42.672461 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-25 21:22:42.672414524 +0000 UTC m=+952.982884569 I0325 21:22:42.672595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:22:42.672671 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-25 21:22:42.672663811 +0000 UTC m=+952.983133866 I0325 21:22:42.692476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:22:42.692567 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:22:42.692601 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-25 21:22:42.692594687 +0000 UTC m=+953.003064742 I0325 21:22:43.138931 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-7m259" condition "Approved" to 2026-03-25 21:22:43.138918807 +0000 UTC m=+953.449388862 I0325 21:22:43.156257 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-7m259" condition "Ready" to 2026-03-25 21:22:43.15624498 +0000 UTC m=+953.466715035 I0325 21:22:43.188480 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:22:43.188469342 +0000 UTC m=+953.498939397 I0325 21:22:43.212217 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:22:43.270378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:52.586667 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:25:52.586733 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 21:25:52.586723767 +0000 UTC m=+1142.897193852 I0325 21:25:52.586709 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-25 21:25:52.586686036 +0000 UTC m=+1142.897156111 I0325 21:25:52.604990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:52.605096 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0325 21:25:52.605118 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-25 21:25:52.605112425 +0000 UTC m=+1142.915582480 I0325 21:25:52.771787 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:52.777100 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5fmww" condition "Approved" to 2026-03-25 21:25:52.777089061 +0000 UTC m=+1143.087559116 I0325 21:25:52.790198 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-5fmww" condition "Ready" to 2026-03-25 21:25:52.790183797 +0000 UTC m=+1143.100653872 I0325 21:25:52.821110 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:25:52.821098726 +0000 UTC m=+1143.131568781 I0325 21:25:52.853545 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:52.854036 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-25 21:25:52.854026604 +0000 UTC m=+1143.164496689 I0325 21:25:52.862393 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0325 21:25:52.873071 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"