I0529 23:03:38.517020 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0529 23:03:38.517168 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0529 23:03:38.518050 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0529 23:03:38.698654 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0529 23:03:38.705683 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0529 23:03:38.705692 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0529 23:03:38.709550 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0529 23:03:38.723994 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0529 23:03:40.318898 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0529 23:03:40.319372 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0529 23:03:40.328177 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0529 23:03:40.333543 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0529 23:03:40.346279 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0529 23:03:40.439511 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0529 23:03:40.443780 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0529 23:03:40.448254 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0529 23:03:40.453514 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0529 23:03:40.453558 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0529 23:03:40.455930 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0529 23:03:40.456154 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0529 23:03:40.457584 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0529 23:03:40.460000 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0529 23:03:40.464915 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0529 23:03:40.465041 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0529 23:03:40.465038 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0529 23:03:40.467452 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0529 23:03:40.470055 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0529 23:03:40.471900 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0529 23:03:40.473608 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0529 23:03:40.475195 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0529 23:03:40.475212 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0529 23:03:40.475276 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0529 23:03:40.482196 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0529 23:03:40.484571 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.485107 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.488457 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.530652 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.588226 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.594558 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.607425 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.661156 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.705889 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:03:40.788905 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0529 23:10:33.247189 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-05-29 23:10:33.24717425 +0000 UTC m=+417.214651185 I0529 23:10:33.247774 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 23:10:33.247846 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-29 23:10:33.247837854 +0000 UTC m=+417.215314759 I0529 23:10:33.302236 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:10:33.302340 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 23:10:33.302361 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-05-29 23:10:33.302354533 +0000 UTC m=+417.269831448 I0529 23:10:33.608290 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-g9gkz" condition "Approved" to 2026-05-29 23:10:33.608273673 +0000 UTC m=+417.575750608 I0529 23:10:33.906285 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-g9gkz" condition "Ready" to 2026-05-29 23:10:33.906273245 +0000 UTC m=+417.873750160 I0529 23:10:34.275227 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 23:10:34.275210745 +0000 UTC m=+418.242687680 I0529 23:10:34.531247 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:10:34.752542 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:11:31.443530 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0529 23:11:31.443579 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-29 23:11:31.443566049 +0000 UTC m=+475.411042944 I0529 23:11:31.444404 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 23:11:31.444398237 +0000 UTC m=+475.411875132 I0529 23:11:31.510610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:11:31.510696 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-29 23:11:31.510686981 +0000 UTC m=+475.478163906 I0529 23:11:32.604549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:11:33.293700 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-lpchh" condition "Approved" to 2026-05-29 23:11:33.293687221 +0000 UTC m=+477.261164166 I0529 23:11:33.575254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-lpchh" condition "Ready" to 2026-05-29 23:11:33.575244252 +0000 UTC m=+477.542721157 I0529 23:11:33.886641 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 23:11:33.886625055 +0000 UTC m=+477.854101990 I0529 23:11:34.017923 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:11:34.018536 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-29 23:11:34.018528066 +0000 UTC m=+477.986004961 I0529 23:11:34.056388 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0529 23:11:34.080116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" E0529 23:30:50.196084 1 leaderelection.go:369] Failed to update lock: etcdserver: request timed out