I0412 08:55:28.953537 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0412 08:55:28.953682 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0412 08:55:28.953823 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0412 08:55:28.962175 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0412 08:55:28.962863 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0412 08:55:28.962941 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0412 08:55:28.962960 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0412 08:55:28.967612 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0412 08:55:28.982219 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0412 08:55:28.982435 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0412 08:55:28.987045 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0412 08:55:28.989812 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0412 08:55:28.993682 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0412 08:55:28.998250 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0412 08:55:29.001801 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0412 08:55:29.004171 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0412 08:55:29.004191 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0412 08:55:29.004202 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0412 08:55:29.006068 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0412 08:55:29.007719 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0412 08:55:29.009403 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0412 08:55:29.011113 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0412 08:55:29.015355 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0412 08:55:29.016962 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0412 08:55:29.017110 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0412 08:55:29.018972 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0412 08:55:29.020479 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0412 08:55:29.020496 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0412 08:55:29.020563 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0412 08:55:29.022196 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0412 08:55:29.023986 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0412 08:55:29.025551 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0412 08:55:29.027744 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0412 08:55:29.030994 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.033238 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.033952 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.033992 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.034032 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.034320 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.034372 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.034624 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.034872 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:29.113398 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 08:55:43.724275 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-12 08:55:43.724259058 +0000 UTC m=+14.803353191 I0412 08:55:44.415077 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-12 08:55:44.415062426 +0000 UTC m=+15.494156549 I0412 08:55:44.416155 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:55:44.416186 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-12 08:55:44.416179608 +0000 UTC m=+15.495273731 E0412 08:55:44.430850 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 08:55:44.430937 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-12 08:55:44.430929314 +0000 UTC m=+15.510023417 E0412 08:55:44.430961 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 08:55:44.433611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:55:44.433723 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:55:44.433759 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-12 08:55:44.433750169 +0000 UTC m=+15.512844292 E0412 08:55:44.442179 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0412 08:55:44.442313 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 08:55:44.442349 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 08:55:44.442409 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0412 08:55:44.472844 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-vt2dn" condition "Approved" to 2026-04-12 08:55:44.472826227 +0000 UTC m=+15.551920330 I0412 08:55:44.485448 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-vt2dn" condition "Ready" to 2026-04-12 08:55:44.485438402 +0000 UTC m=+15.564532505 I0412 08:55:44.507303 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:55:44.507285606 +0000 UTC m=+15.586379709 I0412 08:55:44.530149 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:55:44.530499 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:55:44.530488257 +0000 UTC m=+15.609582360 I0412 08:55:44.542032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:55:44.542325 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:55:44.542317616 +0000 UTC m=+15.621411749 I0412 08:55:44.545560 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:55:49.442973 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:55:49.442959218 +0000 UTC m=+20.522053341 I0412 08:56:09.320863 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:56:09.320974 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-12 08:56:09.320924311 +0000 UTC m=+40.400018414 I0412 08:56:09.320973 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-12 08:56:09.320938672 +0000 UTC m=+40.400032935 I0412 08:56:09.329165 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-12 08:56:09.329144611 +0000 UTC m=+40.408238734 I0412 08:56:09.351413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:56:09.351516 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:56:09.351581 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-12 08:56:09.351572397 +0000 UTC m=+40.430666500 I0412 08:56:09.640575 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:56:09.654520 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z2w95" condition "Approved" to 2026-04-12 08:56:09.654508406 +0000 UTC m=+40.733602539 I0412 08:56:09.685391 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-z2w95" condition "Ready" to 2026-04-12 08:56:09.685373145 +0000 UTC m=+40.764467258 I0412 08:56:09.714875 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:56:09.714862628 +0000 UTC m=+40.793956721 I0412 08:56:09.736601 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:56:09.737045 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:56:09.737034347 +0000 UTC m=+40.816128450 I0412 08:56:09.761325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:56:09.761899 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:56:09.76188513 +0000 UTC m=+40.840979253 I0412 08:57:52.251972 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-12 08:57:52.251944498 +0000 UTC m=+143.331038601 I0412 08:57:52.252061 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:57:52.252102 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-12 08:57:52.252092891 +0000 UTC m=+143.331186994 E0412 08:57:52.266926 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0412 08:57:52.267014 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-12 08:57:52.267001947 +0000 UTC m=+143.346096080 I0412 08:57:52.267087 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0412 08:57:52.268932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.269111 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:57:52.269209 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-12 08:57:52.269200921 +0000 UTC m=+143.348295034 E0412 08:57:52.277717 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0412 08:57:52.277852 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0412 08:57:52.277890 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0412 08:57:52.277938 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0412 08:57:52.280812 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-12 08:57:52.280795422 +0000 UTC m=+143.359889525 I0412 08:57:52.280840 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 08:57:52.280889 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-12 08:57:52.280878153 +0000 UTC m=+143.359972286 I0412 08:57:52.303120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.303198 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-12 08:57:52.303189558 +0000 UTC m=+143.382283661 I0412 08:57:52.528792 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.538432 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-b2ndl" condition "Approved" to 2026-04-12 08:57:52.538415959 +0000 UTC m=+143.617510062 I0412 08:57:52.563751 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-b2ndl" condition "Ready" to 2026-04-12 08:57:52.563722743 +0000 UTC m=+143.642816846 I0412 08:57:52.594591 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:57:52.594571427 +0000 UTC m=+143.673665560 I0412 08:57:52.613561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.613985 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:57:52.613975334 +0000 UTC m=+143.693069467 I0412 08:57:52.619290 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.631891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.720061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:52.751233 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-qwm57" condition "Approved" to 2026-04-12 08:57:52.751218795 +0000 UTC m=+143.830312898 I0412 08:57:52.770684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-qwm57" condition "Ready" to 2026-04-12 08:57:52.770665472 +0000 UTC m=+143.849759595 I0412 08:57:57.279020 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:57:57.279006383 +0000 UTC m=+148.358100506 I0412 08:57:57.295327 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-qwm57" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:57:57.295316937 +0000 UTC m=+148.374411060 I0412 08:57:57.323980 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 08:57:57.323967697 +0000 UTC m=+148.403061790 I0412 08:57:57.343705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0412 08:57:57.396141 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:00:29.531830 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready" to 2026-04-12 09:00:29.531763227 +0000 UTC m=+300.610857360 I0412 09:00:29.532294 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:00:29.532390 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Issuing" to 2026-04-12 09:00:29.532376609 +0000 UTC m=+300.611470742 I0412 09:00:29.553288 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:00:29.553376 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-200.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:00:29.553396 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Issuing" to 2026-04-12 09:00:29.553390131 +0000 UTC m=+300.632484234 I0412 09:00:29.889534 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-8x2mt" condition "Approved" to 2026-04-12 09:00:29.889524888 +0000 UTC m=+300.968618981 I0412 09:00:29.904648 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-200.nip.io-tls-8x2mt" condition "Ready" to 2026-04-12 09:00:29.904639391 +0000 UTC m=+300.983733484 I0412 09:00:29.927776 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-200.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:00:29.927767165 +0000 UTC m=+301.006861248 I0412 09:00:29.944349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:00:29.990697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-200.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-200.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:39.577134 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-12 09:01:39.577092992 +0000 UTC m=+370.656187125 I0412 09:01:39.577235 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:01:39.577284 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-12 09:01:39.577270965 +0000 UTC m=+370.656365068 E0412 09:01:39.593615 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 09:01:39.593638 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-12 09:01:39.593634042 +0000 UTC m=+370.672728125 E0412 09:01:39.593668 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 09:01:39.596022 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:39.596067 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-12 09:01:39.596063521 +0000 UTC m=+370.675157614 E0412 09:01:39.603252 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0412 09:01:39.603373 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 09:01:39.603408 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 09:01:39.603472 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0412 09:01:39.612495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:39.633737 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-f9dqw" condition "Approved" to 2026-04-12 09:01:39.633701172 +0000 UTC m=+370.712795275 I0412 09:01:39.644601 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-f9dqw" condition "Ready" to 2026-04-12 09:01:39.644583999 +0000 UTC m=+370.723678102 I0412 09:01:39.673219 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:01:39.673196331 +0000 UTC m=+370.752290464 I0412 09:01:39.689243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:39.690229 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:01:39.690221901 +0000 UTC m=+370.769315984 I0412 09:01:39.695670 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:39.704093 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:39.704436 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:01:39.704423305 +0000 UTC m=+370.783517408 I0412 09:01:39.705164 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:01:44.603855 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:01:44.603844309 +0000 UTC m=+375.682938412 I0412 09:02:22.892407 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-12 09:02:22.892393032 +0000 UTC m=+413.971487135 I0412 09:02:22.892841 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:22.892865 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-12 09:02:22.892861491 +0000 UTC m=+413.971955594 I0412 09:02:22.897663 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:22.897684 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-12 09:02:22.897680097 +0000 UTC m=+413.976774200 I0412 09:02:22.898041 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-12 09:02:22.898036074 +0000 UTC m=+413.977130177 I0412 09:02:22.905303 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-12 09:02:22.905297599 +0000 UTC m=+413.984391702 I0412 09:02:22.905588 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:22.905669 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-12 09:02:22.905656196 +0000 UTC m=+413.984750299 I0412 09:02:22.922580 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:22.922648 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:22.922674 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-12 09:02:22.922666654 +0000 UTC m=+414.001760757 I0412 09:02:22.936068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:22.936359 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:22.936461 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-12 09:02:22.936416058 +0000 UTC m=+414.015510151 I0412 09:02:22.944990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:22.945083 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:22.945113 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-12 09:02:22.94510336 +0000 UTC m=+414.024197463 I0412 09:02:23.196845 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-b2tln" condition "Approved" to 2026-04-12 09:02:23.196837823 +0000 UTC m=+414.275931906 I0412 09:02:23.224071 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-b2tln" condition "Ready" to 2026-04-12 09:02:23.224061514 +0000 UTC m=+414.303155617 I0412 09:02:23.224151 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cq87d" condition "Approved" to 2026-04-12 09:02:23.224140906 +0000 UTC m=+414.303235019 I0412 09:02:23.239905 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cq87d" condition "Ready" to 2026-04-12 09:02:23.239892698 +0000 UTC m=+414.318986801 I0412 09:02:23.261678 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:23.261668121 +0000 UTC m=+414.340762224 I0412 09:02:23.270007 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-979cq" condition "Approved" to 2026-04-12 09:02:23.269991546 +0000 UTC m=+414.349085649 I0412 09:02:23.274821 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:23.274809522 +0000 UTC m=+414.353903625 I0412 09:02:23.280768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:23.281177 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:23.281172229 +0000 UTC m=+414.360266332 I0412 09:02:23.286571 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-979cq" condition "Ready" to 2026-04-12 09:02:23.286560686 +0000 UTC m=+414.365654789 I0412 09:02:23.645740 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:23.892785 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:23.993219 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:23.993208939 +0000 UTC m=+415.072303042 I0412 09:02:24.188444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:24.188974 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:24.188964479 +0000 UTC m=+415.268058612 E0412 09:02:24.286534 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-46x2p\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0412 09:02:24.541269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:24.693120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:30.369041 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" condition "Ready" to 2026-04-12 09:02:30.369019357 +0000 UTC m=+421.448113490 I0412 09:02:30.369081 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:30.369132 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" condition "Issuing" to 2026-04-12 09:02:30.369120869 +0000 UTC m=+421.448214992 I0412 09:02:30.386051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:30.386159 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:30.386191 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" condition "Issuing" to 2026-04-12 09:02:30.386184398 +0000 UTC m=+421.465278481 I0412 09:02:30.605192 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tf6rh" condition "Approved" to 2026-04-12 09:02:30.605178451 +0000 UTC m=+421.684272574 I0412 09:02:30.620634 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tf6rh" condition "Ready" to 2026-04-12 09:02:30.620622237 +0000 UTC m=+421.699716340 I0412 09:02:30.646932 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:30.646913329 +0000 UTC m=+421.726007462 I0412 09:02:30.666038 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:30.666280 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:30.666272724 +0000 UTC m=+421.745366827 I0412 09:02:30.671421 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:30.685218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-2f9s9-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:49.919029 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-12 09:02:49.918991117 +0000 UTC m=+440.998085240 I0412 09:02:49.919177 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:49.919746 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-12 09:02:49.919734532 +0000 UTC m=+440.998828655 I0412 09:02:49.936730 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:49.936792 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:02:49.936808 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-12 09:02:49.936801221 +0000 UTC m=+441.015895324 I0412 09:02:50.242275 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4clg9" condition "Approved" to 2026-04-12 09:02:50.242255921 +0000 UTC m=+441.321350104 I0412 09:02:50.277974 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-4clg9" condition "Ready" to 2026-04-12 09:02:50.277958781 +0000 UTC m=+441.357052914 I0412 09:02:50.308099 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:02:50.30808328 +0000 UTC m=+441.387177373 I0412 09:02:50.331790 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:02:50.386075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:06:13.087615 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:06:13.087663 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-12 09:06:13.087614696 +0000 UTC m=+644.166708799 I0412 09:06:13.087703 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-12 09:06:13.087693728 +0000 UTC m=+644.166787831 I0412 09:06:13.107902 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:06:13.108032 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-12 09:06:13.108019514 +0000 UTC m=+644.187113637 I0412 09:06:13.211025 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:06:13.245756 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-bpn2z" condition "Approved" to 2026-04-12 09:06:13.245738926 +0000 UTC m=+644.324833029 I0412 09:06:13.266683 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-bpn2z" condition "Ready" to 2026-04-12 09:06:13.266669295 +0000 UTC m=+644.345763388 I0412 09:06:13.296341 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:06:13.296319327 +0000 UTC m=+644.375413460 I0412 09:06:13.322298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:06:13.322651 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:06:13.322644093 +0000 UTC m=+644.401738186 I0412 09:06:13.332552 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:06:13.343514 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:08:37.622396 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-12 09:08:37.622349792 +0000 UTC m=+788.701443945 I0412 09:08:37.622470 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:08:37.622542 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-12 09:08:37.622533646 +0000 UTC m=+788.701627749 I0412 09:08:37.641658 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:08:37.641761 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:08:37.641801 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-12 09:08:37.641788011 +0000 UTC m=+788.720882144 I0412 09:08:37.840144 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-gx4cq" condition "Approved" to 2026-04-12 09:08:37.840123189 +0000 UTC m=+788.919217292 I0412 09:08:37.865867 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-gx4cq" condition "Ready" to 2026-04-12 09:08:37.865850463 +0000 UTC m=+788.944944566 I0412 09:08:37.909141 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:08:37.909128499 +0000 UTC m=+788.988222592 I0412 09:08:37.930550 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:08:37.931246 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:08:37.93123043 +0000 UTC m=+789.010324563 I0412 09:08:37.950482 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:08:37.956204 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:09:40.309574 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-12 09:09:40.30955469 +0000 UTC m=+851.388648773 I0412 09:09:40.309840 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:09:40.309908 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-12 09:09:40.309897396 +0000 UTC m=+851.388991519 I0412 09:09:40.334847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:09:40.334926 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:09:40.334946 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-12 09:09:40.334938057 +0000 UTC m=+851.414032180 I0412 09:09:40.601453 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-fhg9h" condition "Approved" to 2026-04-12 09:09:40.601437618 +0000 UTC m=+851.680531731 I0412 09:09:40.626033 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-fhg9h" condition "Ready" to 2026-04-12 09:09:40.62602116 +0000 UTC m=+851.705115263 I0412 09:09:40.654191 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:09:40.654122312 +0000 UTC m=+851.733216425 I0412 09:09:40.676690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:09:40.677582 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:09:40.677557631 +0000 UTC m=+851.756651734 I0412 09:09:40.699611 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:09:40.699877 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:09:40.699869767 +0000 UTC m=+851.778963860 I0412 09:12:38.727792 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-12 09:12:38.727735024 +0000 UTC m=+1029.806829157 I0412 09:12:38.728264 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:12:38.728351 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-12 09:12:38.728342077 +0000 UTC m=+1029.807436200 I0412 09:12:38.743748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:12:38.743964 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 09:12:38.744095 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-12 09:12:38.744006219 +0000 UTC m=+1029.823100352 I0412 09:12:39.029134 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ts62g" condition "Approved" to 2026-04-12 09:12:39.029120784 +0000 UTC m=+1030.108214867 I0412 09:12:39.051599 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-ts62g" condition "Ready" to 2026-04-12 09:12:39.051577462 +0000 UTC m=+1030.130671565 I0412 09:12:39.076005 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:12:39.07599373 +0000 UTC m=+1030.155087823 I0412 09:12:39.101272 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:12:39.101878 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:12:39.101868617 +0000 UTC m=+1030.180962740 I0412 09:12:39.121951 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 09:12:39.122329 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 09:12:39.122322685 +0000 UTC m=+1030.201416778