I0505 18:13:18.475867 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 18:13:18.476493 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 18:13:18.476695 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 18:13:18.481511 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 18:13:18.481877 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 18:13:18.481933 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 18:13:18.482080 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 18:13:18.484366 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 18:13:18.549529 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 18:13:18.554928 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 18:13:18.559659 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 18:13:18.559991 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 18:13:18.564051 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 18:13:18.566855 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 18:13:18.569521 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 18:13:18.572550 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 18:13:18.575314 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 18:13:18.578163 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 18:13:18.584153 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 18:13:18.587570 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 18:13:18.589930 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 18:13:18.590003 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 18:13:18.592515 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 18:13:18.594676 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 18:13:18.596301 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 18:13:18.596339 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 18:13:18.596462 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 18:13:18.598167 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 18:13:18.598252 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 18:13:18.600017 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 18:13:18.602512 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 18:13:18.607094 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 18:13:18.607509 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 18:13:18.609169 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.609773 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.610314 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.610792 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.694214 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.812710 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.812739 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.813887 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.813904 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:18.814328 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 18:13:32.093602 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 18:13:32.0935772 +0000 UTC m=+13.649183642 I0505 18:13:32.830012 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:13:32.830216 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 18:13:32.830197047 +0000 UTC m=+14.385803589 I0505 18:13:32.830942 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 18:13:32.829782667 +0000 UTC m=+14.385389129 E0505 18:13:32.847410 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 18:13:32.847459 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:13:32.848160 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 18:13:32.848149723 +0000 UTC m=+14.403756195 I0505 18:13:32.847508 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 18:13:32.847495602 +0000 UTC m=+14.403102074 E0505 18:13:32.848517 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 18:13:32.860242 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 18:13:32.860440 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 18:13:32.860509 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 18:13:32.860562 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 18:13:32.873623 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:13:32.948349 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jx2hx" condition "Approved" to 2026-05-05 18:13:32.948331696 +0000 UTC m=+14.503938138 I0505 18:13:32.965854 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jx2hx" condition "Ready" to 2026-05-05 18:13:32.965840331 +0000 UTC m=+14.521446793 I0505 18:13:32.988598 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:13:32.988586954 +0000 UTC m=+14.544193396 I0505 18:13:33.007051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:13:33.007415 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:13:33.007408679 +0000 UTC m=+14.563015121 I0505 18:13:33.012191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:13:33.024266 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:13:33.025321 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:13:33.025308035 +0000 UTC m=+14.580914497 I0505 18:13:37.860952 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:13:37.860929852 +0000 UTC m=+19.416536294 I0505 18:14:00.249147 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 18:14:00.249123779 +0000 UTC m=+41.804730221 I0505 18:14:00.249974 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:14:00.250031 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 18:14:00.25002606 +0000 UTC m=+41.805632502 I0505 18:14:00.263553 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 18:14:00.263539539 +0000 UTC m=+41.819145971 I0505 18:14:00.275417 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:14:00.275603 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 18:14:00.275596687 +0000 UTC m=+41.831203119 I0505 18:14:00.416191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:14:00.446433 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-5n72x" condition "Approved" to 2026-05-05 18:14:00.44642141 +0000 UTC m=+42.002027852 I0505 18:14:00.476939 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-5n72x" condition "Ready" to 2026-05-05 18:14:00.476928823 +0000 UTC m=+42.032535265 I0505 18:14:00.506728 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:14:00.506719186 +0000 UTC m=+42.062325628 I0505 18:14:00.537104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:14:00.537441 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:14:00.537435059 +0000 UTC m=+42.093041501 I0505 18:14:00.560815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:14:00.561141 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:14:00.561133303 +0000 UTC m=+42.116739745 I0505 18:18:27.143463 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready" to 2026-05-05 18:18:27.143426389 +0000 UTC m=+308.699032821 I0505 18:18:27.144020 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:18:27.144056 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Issuing" to 2026-05-05 18:18:27.144038234 +0000 UTC m=+308.699644666 I0505 18:18:27.164325 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:18:27.164388 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-248.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:18:27.164401 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Issuing" to 2026-05-05 18:18:27.164395934 +0000 UTC m=+308.720002366 I0505 18:18:27.496765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:18:27.506134 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-248.nip.io-tls-sdc5z" condition "Approved" to 2026-05-05 18:18:27.506126115 +0000 UTC m=+309.061732537 I0505 18:18:27.531926 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-248.nip.io-tls-sdc5z" condition "Ready" to 2026-05-05 18:18:27.53190852 +0000 UTC m=+309.087514942 I0505 18:18:27.572035 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:18:27.572023735 +0000 UTC m=+309.127630177 I0505 18:18:27.600101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:18:27.600623 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:18:27.600616742 +0000 UTC m=+309.156223184 I0505 18:18:27.614818 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-248.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-248.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:18:27.615297 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-248.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:18:27.615288343 +0000 UTC m=+309.170894775 I0505 18:19:33.027477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:19:33.027735 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 18:19:33.027732121 +0000 UTC m=+374.583338553 I0505 18:19:33.027690 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 18:19:33.027683139 +0000 UTC m=+374.583289571 E0505 18:19:33.040250 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 18:19:33.040293 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 18:19:33.040282636 +0000 UTC m=+374.595889078 E0505 18:19:33.040450 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 18:19:33.041784 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:19:33.041872 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 18:19:33.041862717 +0000 UTC m=+374.597469159 E0505 18:19:33.054654 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 18:19:33.054782 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 18:19:33.054861 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 18:19:33.054993 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 18:19:33.063338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:19:33.083359 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k2wrs" condition "Approved" to 2026-05-05 18:19:33.083342677 +0000 UTC m=+374.638949119 I0505 18:19:33.099714 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k2wrs" condition "Ready" to 2026-05-05 18:19:33.099702629 +0000 UTC m=+374.655309071 I0505 18:19:33.126397 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:19:33.126381329 +0000 UTC m=+374.681987771 I0505 18:19:33.140631 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:19:33.141036 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:19:33.141027014 +0000 UTC m=+374.696633466 I0505 18:19:33.162521 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:19:33.165679 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:19:38.055341 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:19:38.055327447 +0000 UTC m=+379.610933909 I0505 18:20:22.509099 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:22.509137 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 18:20:22.509129773 +0000 UTC m=+424.064736225 I0505 18:20:22.509304 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:22.510926 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 18:20:22.510921166 +0000 UTC m=+424.066527628 I0505 18:20:22.509378 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 18:20:22.509373521 +0000 UTC m=+424.064979963 I0505 18:20:22.509340 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 18:20:22.509310879 +0000 UTC m=+424.064917321 I0505 18:20:22.521654 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 18:20:22.521641842 +0000 UTC m=+424.077248274 I0505 18:20:22.525081 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:22.525119 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 18:20:22.525110694 +0000 UTC m=+424.080717126 I0505 18:20:22.557850 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.557894 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:22.557907 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 18:20:22.557902541 +0000 UTC m=+424.113508963 I0505 18:20:22.559512 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.559583 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:22.559605 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 18:20:22.559599 +0000 UTC m=+424.115205422 I0505 18:20:22.560339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.560463 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 18:20:22.560452776 +0000 UTC m=+424.116059228 I0505 18:20:22.781501 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-jgrt5" condition "Approved" to 2026-05-05 18:20:22.781492602 +0000 UTC m=+424.337099034 I0505 18:20:22.835271 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-jgrt5" condition "Ready" to 2026-05-05 18:20:22.835263567 +0000 UTC m=+424.390869999 I0505 18:20:22.886643 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:20:22.886631892 +0000 UTC m=+424.442238324 I0505 18:20:22.891359 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-mpkch" condition "Approved" to 2026-05-05 18:20:22.89135129 +0000 UTC m=+424.446957712 I0505 18:20:22.910238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.910543 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:20:22.910538296 +0000 UTC m=+424.466144728 I0505 18:20:22.917333 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-mpkch" condition "Ready" to 2026-05-05 18:20:22.917325816 +0000 UTC m=+424.472932238 I0505 18:20:22.925391 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.946392 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.954618 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:20:22.954606985 +0000 UTC m=+424.510213417 I0505 18:20:22.988873 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:22.989335 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:20:22.989329078 +0000 UTC m=+424.544935510 I0505 18:20:23.130037 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" E0505 18:20:23.272205 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-bpznz\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0505 18:20:23.352177 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tcfst" condition "Approved" to 2026-05-05 18:20:23.352156422 +0000 UTC m=+424.907762854 I0505 18:20:23.925107 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tcfst" condition "Ready" to 2026-05-05 18:20:23.925093644 +0000 UTC m=+425.480700116 I0505 18:20:24.270755 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:24.808372 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:20:24.808355886 +0000 UTC m=+426.363962348 I0505 18:20:25.245943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:37.468153 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" condition "Ready" to 2026-05-05 18:20:37.46812196 +0000 UTC m=+439.023728432 I0505 18:20:37.468208 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:37.468325 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" condition "Issuing" to 2026-05-05 18:20:37.468315796 +0000 UTC m=+439.023922238 I0505 18:20:37.486652 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-czqtt-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:37.486735 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:20:37.486758 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" condition "Issuing" to 2026-05-05 18:20:37.48675289 +0000 UTC m=+439.042359322 I0505 18:20:37.700107 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-czqtt-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:37.711841 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-czqtt-cvl9f" condition "Approved" to 2026-05-05 18:20:37.711825189 +0000 UTC m=+439.267431621 I0505 18:20:37.731792 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-czqtt-cvl9f" condition "Ready" to 2026-05-05 18:20:37.731777564 +0000 UTC m=+439.287384026 I0505 18:20:37.763947 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:20:37.763933932 +0000 UTC m=+439.319540394 I0505 18:20:37.785161 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-czqtt-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:20:37.856363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-czqtt-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-czqtt-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:21:00.181164 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 18:21:00.181151166 +0000 UTC m=+461.736757598 I0505 18:21:00.181445 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:21:00.181467 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 18:21:00.181462884 +0000 UTC m=+461.737069316 I0505 18:21:00.200933 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:21:00.201044 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 18:21:00.201037373 +0000 UTC m=+461.756643805 I0505 18:21:00.335003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:21:00.370563 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mbfwm" condition "Approved" to 2026-05-05 18:21:00.370552121 +0000 UTC m=+461.926158553 I0505 18:21:00.397440 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-mbfwm" condition "Ready" to 2026-05-05 18:21:00.397432538 +0000 UTC m=+461.953038970 I0505 18:21:00.424909 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:21:00.424881579 +0000 UTC m=+461.980488021 I0505 18:21:00.445975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:24:15.303462 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 18:24:15.303446215 +0000 UTC m=+656.859052657 I0505 18:24:15.303852 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:24:15.303904 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 18:24:15.303900102 +0000 UTC m=+656.859506544 I0505 18:24:15.323543 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:24:15.323598 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:24:15.323612 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 18:24:15.323607591 +0000 UTC m=+656.879214023 I0505 18:24:15.457286 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-s6p8g" condition "Approved" to 2026-05-05 18:24:15.457268759 +0000 UTC m=+657.012875231 I0505 18:24:15.476738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-s6p8g" condition "Ready" to 2026-05-05 18:24:15.476724515 +0000 UTC m=+657.032330957 I0505 18:24:15.507323 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:24:15.507310206 +0000 UTC m=+657.062916648 I0505 18:24:15.535080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:24:59.005788 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-05 18:24:59.00577379 +0000 UTC m=+700.561380232 I0505 18:24:59.006199 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:24:59.006218 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 18:24:59.006214595 +0000 UTC m=+700.561821037 I0505 18:24:59.020549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:24:59.020627 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 18:24:59.020644 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-05 18:24:59.020638462 +0000 UTC m=+700.576244904 I0505 18:24:59.567370 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-kppbd" condition "Approved" to 2026-05-05 18:24:59.567360722 +0000 UTC m=+701.122967174 I0505 18:24:59.587638 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-kppbd" condition "Ready" to 2026-05-05 18:24:59.58762834 +0000 UTC m=+701.143234772 I0505 18:24:59.612772 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:24:59.612760098 +0000 UTC m=+701.168366530 I0505 18:24:59.638915 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:24:59.639302 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:24:59.639294332 +0000 UTC m=+701.194900774 I0505 18:24:59.658718 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 18:24:59.659004 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 18:24:59.658994894 +0000 UTC m=+701.214601326