I0505 10:21:33.390519 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0505 10:21:33.390693 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0505 10:21:33.390780 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0505 10:21:33.397727 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0505 10:21:33.398323 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0505 10:21:33.398410 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0505 10:21:33.398447 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0505 10:21:33.401858 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0505 10:21:33.418017 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0505 10:21:33.418322 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0505 10:21:33.422893 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0505 10:21:33.425546 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0505 10:21:33.429666 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0505 10:21:33.434636 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0505 10:21:33.438840 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0505 10:21:33.442199 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0505 10:21:33.445116 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0505 10:21:33.448607 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0505 10:21:33.451617 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0505 10:21:33.454763 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0505 10:21:33.455108 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0505 10:21:33.460057 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0505 10:21:33.460085 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0505 10:21:33.460136 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0505 10:21:33.463234 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0505 10:21:33.465838 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0505 10:21:33.468672 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0505 10:21:33.470602 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0505 10:21:33.470745 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0505 10:21:33.472685 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0505 10:21:33.477183 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0505 10:21:33.481283 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0505 10:21:33.481329 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0505 10:21:33.485084 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.487691 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.487923 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.489241 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.511363 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.550618 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.569201 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.584050 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.590726 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:33.607616 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0505 10:21:45.687668 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-05 10:21:45.687648793 +0000 UTC m=+12.333125557 I0505 10:21:46.443330 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-05 10:21:46.443307693 +0000 UTC m=+13.088784487 I0505 10:21:46.443390 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:21:46.443582 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 10:21:46.443565918 +0000 UTC m=+13.089042692 E0505 10:21:46.458484 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 10:21:46.458556 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-05 10:21:46.458548723 +0000 UTC m=+13.104025497 E0505 10:21:46.458581 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 10:21:46.460003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:21:46.460120 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:21:46.460154 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-05 10:21:46.460144393 +0000 UTC m=+13.105621187 E0505 10:21:46.469247 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0505 10:21:46.469550 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 10:21:46.469657 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 10:21:46.469711 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0505 10:21:46.500984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:21:46.501362 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nw8xj" condition "Approved" to 2026-05-05 10:21:46.501339038 +0000 UTC m=+13.146815842 I0505 10:21:46.513092 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nw8xj" condition "Ready" to 2026-05-05 10:21:46.51306802 +0000 UTC m=+13.158544824 I0505 10:21:46.542978 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:21:46.54296705 +0000 UTC m=+13.188443834 I0505 10:21:46.564939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:21:51.470349 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:21:51.470331199 +0000 UTC m=+18.115808013 I0505 10:22:13.086085 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:22:13.086317 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 10:22:13.086299545 +0000 UTC m=+39.731776389 I0505 10:22:13.086482 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-05 10:22:13.08482854 +0000 UTC m=+39.730305314 I0505 10:22:13.097456 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-05 10:22:13.09743804 +0000 UTC m=+39.742914814 I0505 10:22:13.109709 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:22:13.109772 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:22:13.109793 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-05 10:22:13.109788956 +0000 UTC m=+39.755265730 I0505 10:22:13.315832 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:22:13.324393 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-dvwcc" condition "Approved" to 2026-05-05 10:22:13.324380506 +0000 UTC m=+39.969857270 I0505 10:22:13.359059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-dvwcc" condition "Ready" to 2026-05-05 10:22:13.359041811 +0000 UTC m=+40.004518585 I0505 10:22:13.391655 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:22:13.391639391 +0000 UTC m=+40.037116185 I0505 10:22:13.417560 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:22:13.417748 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:22:13.417742637 +0000 UTC m=+40.063219401 I0505 10:22:13.454981 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:22:13.465941 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:23:59.438178 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-05-05 10:23:59.438078107 +0000 UTC m=+146.083554911 I0505 10:23:59.438238 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:23:59.438296 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-05 10:23:59.43828418 +0000 UTC m=+146.083760954 E0505 10:23:59.454827 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 10:23:59.454923 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-05-05 10:23:59.454912653 +0000 UTC m=+146.100389427 I0505 10:23:59.454952 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 10:23:59.458801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:23:59.458934 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:23:59.458991 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-05-05 10:23:59.458983718 +0000 UTC m=+146.104460492 E0505 10:23:59.466303 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0505 10:23:59.466421 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0505 10:23:59.466483 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0505 10:23:59.466547 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0505 10:23:59.472652 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-05-05 10:23:59.472635545 +0000 UTC m=+146.118112319 I0505 10:23:59.472957 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:23:59.473019 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-05 10:23:59.473004733 +0000 UTC m=+146.118481527 I0505 10:23:59.488914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:23:59.488977 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:23:59.488998 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-05-05 10:23:59.488989614 +0000 UTC m=+146.134466388 I0505 10:23:59.753760 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:23:59.772852 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bcfvj" condition "Approved" to 2026-05-05 10:23:59.772838094 +0000 UTC m=+146.418314888 I0505 10:23:59.798319 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bcfvj" condition "Ready" to 2026-05-05 10:23:59.798304958 +0000 UTC m=+146.443781742 I0505 10:23:59.798403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:23:59.807434 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-4mmvr" condition "Approved" to 2026-05-05 10:23:59.807411764 +0000 UTC m=+146.452888538 I0505 10:23:59.823607 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-4mmvr" condition "Ready" to 2026-05-05 10:23:59.823587518 +0000 UTC m=+146.469064292 I0505 10:23:59.825902 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:23:59.82588028 +0000 UTC m=+146.471357094 I0505 10:23:59.849447 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:23:59.849751 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:23:59.849739614 +0000 UTC m=+146.495216388 I0505 10:23:59.869402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:24:04.467812 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:24:04.467795496 +0000 UTC m=+151.113272300 I0505 10:24:04.483201 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-4mmvr" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:24:04.483186156 +0000 UTC m=+151.128662930 I0505 10:24:04.515365 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:24:04.515348892 +0000 UTC m=+151.160825666 I0505 10:24:04.536628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:24:04.537086 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:24:04.537074818 +0000 UTC m=+151.182551592 I0505 10:24:04.545016 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:24:04.558092 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:26:41.718820 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-20.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:26:41.718883 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-20.nip.io-tls" condition "Issuing" to 2026-05-05 10:26:41.718870575 +0000 UTC m=+308.364347389 I0505 10:26:41.719737 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-20.nip.io-tls" condition "Ready" to 2026-05-05 10:26:41.71971394 +0000 UTC m=+308.365190744 I0505 10:26:41.742195 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-20.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-20.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:26:41.742290 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-20.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:26:41.742322 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-20.nip.io-tls" condition "Issuing" to 2026-05-05 10:26:41.742312268 +0000 UTC m=+308.387789072 I0505 10:26:41.893600 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-20.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-20.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:26:41.901301 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-20.nip.io-tls-7plgt" condition "Approved" to 2026-05-05 10:26:41.901287545 +0000 UTC m=+308.546764329 I0505 10:26:41.919552 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-20.nip.io-tls-7plgt" condition "Ready" to 2026-05-05 10:26:41.919539741 +0000 UTC m=+308.565016515 I0505 10:26:41.944585 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-20.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:26:41.944570414 +0000 UTC m=+308.590047208 I0505 10:26:41.971439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-20.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-20.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:26:42.021182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-20.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-20.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:27:52.358305 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-05 10:27:52.358258143 +0000 UTC m=+379.003734937 I0505 10:27:52.358657 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:27:52.358732 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 10:27:52.358715931 +0000 UTC m=+379.004192725 E0505 10:27:52.370158 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 10:27:52.370204 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-05 10:27:52.370196968 +0000 UTC m=+379.015673742 E0505 10:27:52.370253 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0505 10:27:52.372678 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:27:52.372766 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:27:52.372795 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-05 10:27:52.372787657 +0000 UTC m=+379.018264431 E0505 10:27:52.379472 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0505 10:27:52.379546 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 10:27:52.379572 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0505 10:27:52.379629 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0505 10:27:52.411765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:27:52.415879 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4ww84" condition "Approved" to 2026-05-05 10:27:52.415857202 +0000 UTC m=+379.061333996 I0505 10:27:52.428747 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-4ww84" condition "Ready" to 2026-05-05 10:27:52.428729226 +0000 UTC m=+379.074206000 I0505 10:27:52.454191 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:27:52.454178817 +0000 UTC m=+379.099655591 I0505 10:27:52.468578 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:27:52.514417 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:27:57.380023 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:27:57.38000856 +0000 UTC m=+384.025485354 I0505 10:28:34.945927 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-05 10:28:34.945919321 +0000 UTC m=+421.591396085 I0505 10:28:34.946268 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:34.947757 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 10:28:34.947746506 +0000 UTC m=+421.593223290 I0505 10:28:34.948034 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 10:28:34.948021931 +0000 UTC m=+421.593498695 I0505 10:28:34.948973 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:34.949002 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-05 10:28:34.94899871 +0000 UTC m=+421.594475464 I0505 10:28:34.954093 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:34.954131 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 10:28:34.954123946 +0000 UTC m=+421.599600710 I0505 10:28:34.954138 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-05 10:28:34.954126286 +0000 UTC m=+421.599603050 I0505 10:28:35.013318 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.013379 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:35.013405 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 10:28:35.013399504 +0000 UTC m=+421.658876268 I0505 10:28:35.014411 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.014460 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-05 10:28:35.014453333 +0000 UTC m=+421.659930107 I0505 10:28:35.015153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.015205 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:35.015225 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-05 10:28:35.015220458 +0000 UTC m=+421.660697242 I0505 10:28:35.168722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.208754 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-bx95l" condition "Approved" to 2026-05-05 10:28:35.208738455 +0000 UTC m=+421.854215249 I0505 10:28:35.245476 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-bx95l" condition "Ready" to 2026-05-05 10:28:35.245462886 +0000 UTC m=+421.890939650 I0505 10:28:35.276564 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:35.276551483 +0000 UTC m=+421.922028257 I0505 10:28:35.296127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.296403 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:35.296394937 +0000 UTC m=+421.941871701 I0505 10:28:35.305224 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.323143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.365691 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.366003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rsd25" condition "Approved" to 2026-05-05 10:28:35.365990298 +0000 UTC m=+422.011467062 I0505 10:28:35.384658 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-rsd25" condition "Ready" to 2026-05-05 10:28:35.3846466 +0000 UTC m=+422.030123374 I0505 10:28:35.439714 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:35.439759 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-05 10:28:35.439749308 +0000 UTC m=+422.085226082 I0505 10:28:35.459833 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:35.459822586 +0000 UTC m=+422.105299350 I0505 10:28:35.617706 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.618127 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:35.618117079 +0000 UTC m=+422.263593873 I0505 10:28:35.717769 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-jb6zr" condition "Approved" to 2026-05-05 10:28:35.717747847 +0000 UTC m=+422.363224641 I0505 10:28:35.766596 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:35.870681 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:35.870664179 +0000 UTC m=+422.516140973 I0505 10:28:36.219602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-jb6zr" condition "Ready" to 2026-05-05 10:28:36.219587574 +0000 UTC m=+422.865064378 I0505 10:28:36.416306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:36.621897 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-mwcdm" condition "Approved" to 2026-05-05 10:28:36.621879375 +0000 UTC m=+423.267356169 I0505 10:28:36.975365 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-mwcdm" condition "Ready" to 2026-05-05 10:28:36.975355207 +0000 UTC m=+423.620831981 I0505 10:28:37.210394 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:37.566991 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:37.566975746 +0000 UTC m=+424.212452510 I0505 10:28:37.613768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:37.667257 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:37.765157 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:37.765506 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:37.765497757 +0000 UTC m=+424.410974531 I0505 10:28:38.016754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:42.445008 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" condition "Ready" to 2026-05-05 10:28:42.444993094 +0000 UTC m=+429.090469868 I0505 10:28:42.445024 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:28:42.445327 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" condition "Issuing" to 2026-05-05 10:28:42.445319091 +0000 UTC m=+429.090795865 I0505 10:28:42.459802 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:42.459900 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" condition "Ready" to 2026-05-05 10:28:42.459894785 +0000 UTC m=+429.105371549 I0505 10:28:42.655818 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:28:42.697574 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-jrm4b-w5f7r" condition "Approved" to 2026-05-05 10:28:42.697556624 +0000 UTC m=+429.343033388 I0505 10:28:42.725548 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-jrm4b-w5f7r" condition "Ready" to 2026-05-05 10:28:42.725534431 +0000 UTC m=+429.371011215 I0505 10:28:42.763432 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:28:42.763406185 +0000 UTC m=+429.408882979 I0505 10:28:42.787314 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-jrm4b-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:29:06.074668 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:29:06.074727 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 10:29:06.074706733 +0000 UTC m=+452.720183527 I0505 10:29:06.074758 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-05 10:29:06.074740964 +0000 UTC m=+452.720217738 I0505 10:29:06.090780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:29:06.090851 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:29:06.090874 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-05 10:29:06.090869558 +0000 UTC m=+452.736346332 I0505 10:29:06.214215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:29:06.226232 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-tcmv2" condition "Approved" to 2026-05-05 10:29:06.226219138 +0000 UTC m=+452.871695912 I0505 10:29:06.312361 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-tcmv2" condition "Ready" to 2026-05-05 10:29:06.312342192 +0000 UTC m=+452.957818996 I0505 10:29:06.675506 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:29:06.675483925 +0000 UTC m=+453.320960719 I0505 10:29:07.077052 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:29:07.077596 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:29:07.077584403 +0000 UTC m=+453.723061207 I0505 10:29:07.104509 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:32:29.387820 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:32:29.387866 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-05 10:32:29.387856234 +0000 UTC m=+656.033333038 I0505 10:32:29.388048 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 10:32:29.388020187 +0000 UTC m=+656.033496981 I0505 10:32:29.406411 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:32:29.406504 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-05 10:32:29.406495776 +0000 UTC m=+656.051972550 I0505 10:32:29.539401 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:32:29.570930 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-mgrn8" condition "Approved" to 2026-05-05 10:32:29.570906719 +0000 UTC m=+656.216383473 I0505 10:32:29.594176 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-mgrn8" condition "Ready" to 2026-05-05 10:32:29.594160708 +0000 UTC m=+656.239637482 I0505 10:32:29.621828 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:32:29.62181114 +0000 UTC m=+656.267287914 I0505 10:32:29.645146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:32:29.645709 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:32:29.645696491 +0000 UTC m=+656.291173275 I0505 10:32:29.669886 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:35:04.788418 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-05 10:35:04.788401011 +0000 UTC m=+811.433877805 I0505 10:35:04.788462 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:35:04.788539 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-05-05 10:35:04.788530274 +0000 UTC m=+811.434007048 I0505 10:35:04.815456 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:35:04.815519 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-05-05 10:35:04.815511531 +0000 UTC m=+811.460988295 I0505 10:35:05.069739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:35:05.104623 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-nr29x" condition "Approved" to 2026-05-05 10:35:05.10460546 +0000 UTC m=+811.750082254 I0505 10:35:05.131525 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-nr29x" condition "Ready" to 2026-05-05 10:35:05.131508976 +0000 UTC m=+811.776985770 I0505 10:35:05.169864 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:35:05.169850177 +0000 UTC m=+811.815326951 I0505 10:35:05.192295 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:36:12.926727 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:36:12.926731 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-05-05 10:36:12.926706172 +0000 UTC m=+879.572182976 I0505 10:36:12.926787 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-05 10:36:12.926775734 +0000 UTC m=+879.572252528 I0505 10:36:12.944450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:36:12.944569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:36:12.944603 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-05-05 10:36:12.944595669 +0000 UTC m=+879.590072463 I0505 10:36:13.093768 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6wd9p" condition "Approved" to 2026-05-05 10:36:13.093752396 +0000 UTC m=+879.739229180 I0505 10:36:13.122689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6wd9p" condition "Ready" to 2026-05-05 10:36:13.122674939 +0000 UTC m=+879.768151713 I0505 10:36:13.159601 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:36:13.159590554 +0000 UTC m=+879.805067328 I0505 10:36:13.187877 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:36:13.188239 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:36:13.188230033 +0000 UTC m=+879.833706797 I0505 10:36:13.192929 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:36:13.208077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:39:21.484478 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-05-05 10:39:21.48442661 +0000 UTC m=+1068.129903424 I0505 10:39:21.484794 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:39:21.484910 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-05 10:39:21.484900399 +0000 UTC m=+1068.130377233 I0505 10:39:21.500568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:39:21.500636 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:39:21.500656 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-05-05 10:39:21.500650524 +0000 UTC m=+1068.146127298 I0505 10:39:21.697330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-8ttbp" condition "Approved" to 2026-05-05 10:39:21.697314706 +0000 UTC m=+1068.342791490 I0505 10:39:21.714599 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-8ttbp" condition "Ready" to 2026-05-05 10:39:21.714587139 +0000 UTC m=+1068.360063913 I0505 10:39:21.741325 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:39:21.74131362 +0000 UTC m=+1068.386790394 I0505 10:39:21.771911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:39:21.772292 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:39:21.772285169 +0000 UTC m=+1068.417761943 I0505 10:39:21.793640 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:39:21.793715 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:39:21.793961 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:39:21.793953676 +0000 UTC m=+1068.439430440 I0505 10:45:29.898804 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:45:29.898804 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-05 10:45:29.898781196 +0000 UTC m=+1436.544257990 I0505 10:45:29.898878 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-05-05 10:45:29.898870428 +0000 UTC m=+1436.544347232 I0505 10:45:29.915999 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:45:29.916079 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-05-05 10:45:29.916069939 +0000 UTC m=+1436.561546743 I0505 10:45:30.068252 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:45:30.098890 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-b6ffq" condition "Approved" to 2026-05-05 10:45:30.098873894 +0000 UTC m=+1436.744350688 I0505 10:45:30.119179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-b6ffq" condition "Ready" to 2026-05-05 10:45:30.119167723 +0000 UTC m=+1436.764644497 I0505 10:45:30.154109 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:45:30.154066357 +0000 UTC m=+1436.799543141 I0505 10:45:30.180032 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:45:30.239133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:47:07.157028 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-05-05 10:47:07.157014878 +0000 UTC m=+1533.802491652 I0505 10:47:07.157156 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:47:07.157311 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-05 10:47:07.157300544 +0000 UTC m=+1533.802777368 I0505 10:47:07.183809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:47:07.184042 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0505 10:47:07.184094 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-05-05 10:47:07.184085107 +0000 UTC m=+1533.829561891 I0505 10:47:07.482697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0505 10:47:07.487806 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-2b2fh" condition "Approved" to 2026-05-05 10:47:07.487783066 +0000 UTC m=+1534.133259860 I0505 10:47:07.517325 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-2b2fh" condition "Ready" to 2026-05-05 10:47:07.51731243 +0000 UTC m=+1534.162789194 I0505 10:47:07.550245 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-05 10:47:07.550208997 +0000 UTC m=+1534.195685771 I0505 10:47:07.585738 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again"