I0313 09:53:59.612504 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0313 09:53:59.612643 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0313 09:53:59.612756 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0313 09:53:59.617645 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0313 09:53:59.618151 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0313 09:53:59.618264 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0313 09:53:59.618265 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0313 09:53:59.621500 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0313 09:53:59.642049 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0313 09:53:59.647971 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0313 09:53:59.653920 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0313 09:53:59.656432 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0313 09:53:59.658949 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0313 09:53:59.661188 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0313 09:53:59.663135 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0313 09:53:59.667279 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0313 09:53:59.674701 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0313 09:53:59.674768 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0313 09:53:59.678308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0313 09:53:59.681554 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0313 09:53:59.684172 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0313 09:53:59.686983 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0313 09:53:59.689376 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0313 09:53:59.691441 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0313 09:53:59.693432 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0313 09:53:59.695926 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0313 09:53:59.695983 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0313 09:53:59.696009 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0313 09:53:59.696292 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0313 09:53:59.699757 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0313 09:53:59.701628 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0313 09:53:59.701677 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0313 09:53:59.701723 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0313 09:53:59.704388 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.704583 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.705012 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.705519 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.706015 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.706082 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.706257 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.706438 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.707260 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:53:59.746498 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0313 09:54:14.223018 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-13 09:54:14.222995705 +0000 UTC m=+14.645996963 I0313 09:54:14.911516 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:54:14.911593 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-13 09:54:14.911581235 +0000 UTC m=+15.334582503 I0313 09:54:14.911613 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-13 09:54:14.911590796 +0000 UTC m=+15.334592034 E0313 09:54:14.927566 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:54:14.927645 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-13 09:54:14.927637003 +0000 UTC m=+15.350638261 E0313 09:54:14.927676 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:54:14.930205 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:14.930330 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-13 09:54:14.930320593 +0000 UTC m=+15.353321831 E0313 09:54:14.937573 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0313 09:54:14.937654 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:54:14.937678 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:54:14.937750 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0313 09:54:14.952124 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:14.952254 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-13 09:54:14.952238109 +0000 UTC m=+15.375239377 I0313 09:54:14.953614 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-fd7df" condition "Approved" to 2026-03-13 09:54:14.953601775 +0000 UTC m=+15.376603013 I0313 09:54:14.972776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-fd7df" condition "Ready" to 2026-03-13 09:54:14.97276445 +0000 UTC m=+15.395765688 I0313 09:54:14.998136 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:54:14.9981183 +0000 UTC m=+15.421119558 I0313 09:54:15.016214 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:15.016541 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:54:15.016532722 +0000 UTC m=+15.439533960 I0313 09:54:15.035284 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:19.938809 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:54:19.938794116 +0000 UTC m=+20.361795384 I0313 09:54:37.599084 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-13 09:54:37.597987969 +0000 UTC m=+38.020989237 I0313 09:54:37.598996 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:54:37.599348 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-13 09:54:37.599337544 +0000 UTC m=+38.022338802 I0313 09:54:37.610622 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-13 09:54:37.610602023 +0000 UTC m=+38.033603291 I0313 09:54:37.618927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:37.619040 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-13 09:54:37.61903119 +0000 UTC m=+38.042032428 I0313 09:54:37.831584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:37.874085 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gv28j" condition "Approved" to 2026-03-13 09:54:37.874073609 +0000 UTC m=+38.297074847 I0313 09:54:37.907528 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gv28j" condition "Ready" to 2026-03-13 09:54:37.90751169 +0000 UTC m=+38.330512948 I0313 09:54:37.944715 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:54:37.944692169 +0000 UTC m=+38.367693437 I0313 09:54:37.973534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:54:37.974357 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:54:37.974348049 +0000 UTC m=+38.397349287 I0313 09:54:37.992317 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:10.268924 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-13 09:56:10.268358973 +0000 UTC m=+130.691360231 I0313 09:56:10.268936 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:56:10.269229 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-13 09:56:10.269216899 +0000 UTC m=+130.692218217 E0313 09:56:10.287318 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0313 09:56:10.287410 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-13 09:56:10.287396111 +0000 UTC m=+130.710397369 I0313 09:56:10.287524 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0313 09:56:10.290590 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:10.290674 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-13 09:56:10.290667762 +0000 UTC m=+130.713669000 I0313 09:56:10.298943 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-13 09:56:10.298920407 +0000 UTC m=+130.721921665 I0313 09:56:10.299105 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:56:10.299152 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-13 09:56:10.299144351 +0000 UTC m=+130.722145589 E0313 09:56:10.299394 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0313 09:56:10.299563 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0313 09:56:10.299606 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0313 09:56:10.299666 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0313 09:56:10.313175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:10.313247 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:56:10.313275 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-13 09:56:10.313267307 +0000 UTC m=+130.736268545 I0313 09:56:10.548688 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-w5sdq" condition "Approved" to 2026-03-13 09:56:10.548668406 +0000 UTC m=+130.971669664 I0313 09:56:10.565241 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-w5sdq" condition "Ready" to 2026-03-13 09:56:10.565224748 +0000 UTC m=+130.988225986 I0313 09:56:10.926364 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:10.958667 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-kdd8p" condition "Approved" to 2026-03-13 09:56:10.95865119 +0000 UTC m=+131.381652458 I0313 09:56:10.986473 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-kdd8p" condition "Ready" to 2026-03-13 09:56:10.986460113 +0000 UTC m=+131.409461341 I0313 09:56:11.063271 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:11.063257078 +0000 UTC m=+131.486258316 I0313 09:56:11.084651 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:11.085166 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:11.08515786 +0000 UTC m=+131.508159098 I0313 09:56:11.089194 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:11.104502 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:11.104881 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:11.104868871 +0000 UTC m=+131.527870129 I0313 09:56:15.299993 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:15.299976798 +0000 UTC m=+135.722978066 I0313 09:56:15.315404 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-w5sdq" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:15.315391088 +0000 UTC m=+135.738392326 I0313 09:56:15.344725 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:15.344708649 +0000 UTC m=+135.767709917 I0313 09:56:15.360430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:15.360741 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:56:15.360734691 +0000 UTC m=+135.783735929 I0313 09:56:15.375440 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:56:15.380238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:58:42.082528 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-199.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:58:42.082617 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-199.nip.io-tls" condition "Issuing" to 2026-03-13 09:58:42.082596283 +0000 UTC m=+282.505597521 I0313 09:58:42.082756 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-199.nip.io-tls" condition "Ready" to 2026-03-13 09:58:42.082565513 +0000 UTC m=+282.505566771 I0313 09:58:42.106128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-199.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-199.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:58:42.106186 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-199.nip.io-tls" condition "Ready" to 2026-03-13 09:58:42.106181563 +0000 UTC m=+282.529182791 I0313 09:58:42.363146 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-199.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-199.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:58:42.391881 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-199.nip.io-tls-dlqvx" condition "Approved" to 2026-03-13 09:58:42.391861376 +0000 UTC m=+282.814862604 I0313 09:58:42.409755 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-199.nip.io-tls-dlqvx" condition "Ready" to 2026-03-13 09:58:42.409736709 +0000 UTC m=+282.832737967 I0313 09:58:42.446794 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-199.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:58:42.44677549 +0000 UTC m=+282.869776718 I0313 09:58:42.482176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-199.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-199.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:58:42.482452 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-199.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:58:42.482444134 +0000 UTC m=+282.905445362 I0313 09:58:42.501581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-199.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-199.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:58:42.518828 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-199.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-199.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:58:42.519113 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-199.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:58:42.519106028 +0000 UTC m=+282.942107256 I0313 09:58:42.526640 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-199.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-199.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:51.571742 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-13 09:59:51.571692404 +0000 UTC m=+351.994693662 I0313 09:59:51.571755 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:51.572057 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-13 09:59:51.57203913 +0000 UTC m=+351.995040388 E0313 09:59:51.584934 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:59:51.584978 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-13 09:59:51.584970181 +0000 UTC m=+352.007971439 E0313 09:59:51.585046 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0313 09:59:51.586379 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:51.586451 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 09:59:51.586478 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-13 09:59:51.586472019 +0000 UTC m=+352.009473287 E0313 09:59:51.595447 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0313 09:59:51.595625 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:59:51.595705 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0313 09:59:51.595771 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0313 09:59:51.620967 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:51.621036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gt84f" condition "Approved" to 2026-03-13 09:59:51.621016343 +0000 UTC m=+352.044017611 I0313 09:59:51.632345 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gt84f" condition "Ready" to 2026-03-13 09:59:51.632328624 +0000 UTC m=+352.055329882 I0313 09:59:51.663028 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:51.663012096 +0000 UTC m=+352.086013354 I0313 09:59:51.680403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0313 09:59:56.596378 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 09:59:56.596363554 +0000 UTC m=+357.019364812 I0313 10:00:34.402817 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:00:34.402851 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-13 10:00:34.40284504 +0000 UTC m=+394.825846288 I0313 10:00:34.403147 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:00:34.403168 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-13 10:00:34.403164576 +0000 UTC m=+394.826165814 I0313 10:00:34.403341 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-13 10:00:34.403321429 +0000 UTC m=+394.826322747 I0313 10:00:34.403486 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-13 10:00:34.403479951 +0000 UTC m=+394.826481199 I0313 10:00:34.403823 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:00:34.403846 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-13 10:00:34.403842078 +0000 UTC m=+394.826843316 I0313 10:00:34.404050 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-13 10:00:34.404045632 +0000 UTC m=+394.827046870 I0313 10:00:34.439591 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.439667 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:00:34.439691 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-13 10:00:34.439685728 +0000 UTC m=+394.862686956 I0313 10:00:34.452407 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.452497 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-13 10:00:34.452489487 +0000 UTC m=+394.875490715 I0313 10:00:34.453342 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.456797 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-13 10:00:34.456788427 +0000 UTC m=+394.879789655 I0313 10:00:34.622177 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-f6zrf" condition "Approved" to 2026-03-13 10:00:34.622164296 +0000 UTC m=+395.045165554 I0313 10:00:34.640152 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-f6zrf" condition "Ready" to 2026-03-13 10:00:34.640136322 +0000 UTC m=+395.063137590 I0313 10:00:34.643412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.670837 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:34.670821675 +0000 UTC m=+395.093822933 I0313 10:00:34.676121 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tds5s" condition "Approved" to 2026-03-13 10:00:34.676111094 +0000 UTC m=+395.099112332 I0313 10:00:34.691349 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-tds5s" condition "Ready" to 2026-03-13 10:00:34.691338838 +0000 UTC m=+395.114340076 I0313 10:00:34.742287 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.742742 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:34.742731768 +0000 UTC m=+395.165733036 I0313 10:00:34.745513 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.746883 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:34.746868756 +0000 UTC m=+395.169869974 I0313 10:00:34.949751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:34.990897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:35.045281 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-dr8q9" condition "Approved" to 2026-03-13 10:00:35.045257959 +0000 UTC m=+395.468259227 I0313 10:00:35.399765 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-dr8q9" condition "Ready" to 2026-03-13 10:00:35.399744791 +0000 UTC m=+395.822746049 I0313 10:00:35.791720 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:35.791699192 +0000 UTC m=+396.214700420 I0313 10:00:35.951322 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:35.951836 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:35.951826943 +0000 UTC m=+396.374828211 I0313 10:00:36.145868 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:42.740366 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:00:42.740437 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" condition "Issuing" to 2026-03-13 10:00:42.740420764 +0000 UTC m=+403.163422032 I0313 10:00:42.740387 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" condition "Ready" to 2026-03-13 10:00:42.740371464 +0000 UTC m=+403.163372692 I0313 10:00:42.756268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:42.756366 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" condition "Ready" to 2026-03-13 10:00:42.756356542 +0000 UTC m=+403.179357800 I0313 10:00:42.872286 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:42.898807 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-x6dfk-f2t99" condition "Approved" to 2026-03-13 10:00:42.898788162 +0000 UTC m=+403.321789400 I0313 10:00:42.921393 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-x6dfk-f2t99" condition "Ready" to 2026-03-13 10:00:42.921369614 +0000 UTC m=+403.344370882 I0313 10:00:42.953998 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:00:42.953981594 +0000 UTC m=+403.376982832 I0313 10:00:42.975494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:00:43.027139 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-x6dfk-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:01:22.509795 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-13 10:01:22.509739631 +0000 UTC m=+442.932740859 I0313 10:01:22.510300 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:01:22.510364 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-13 10:01:22.510341753 +0000 UTC m=+442.933342991 I0313 10:01:22.525486 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:01:22.525615 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-13 10:01:22.525601458 +0000 UTC m=+442.948602726 I0313 10:01:22.669745 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:01:22.737990 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-86m7w" condition "Approved" to 2026-03-13 10:01:22.737966583 +0000 UTC m=+443.160967821 I0313 10:01:22.765066 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-86m7w" condition "Ready" to 2026-03-13 10:01:22.765042248 +0000 UTC m=+443.188043516 I0313 10:01:22.801702 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:01:22.801688653 +0000 UTC m=+443.224689881 I0313 10:01:22.830457 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:01:22.906846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:04:41.790880 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:04:41.790996 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-13 10:04:41.790956609 +0000 UTC m=+642.213957877 I0313 10:04:41.791130 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-13 10:04:41.791109652 +0000 UTC m=+642.214110910 I0313 10:04:41.813012 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:04:41.813212 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-13 10:04:41.813196084 +0000 UTC m=+642.236197342 I0313 10:04:42.019645 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:04:42.054620 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-dhjp8" condition "Approved" to 2026-03-13 10:04:42.054606059 +0000 UTC m=+642.477607307 I0313 10:04:42.074586 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-dhjp8" condition "Ready" to 2026-03-13 10:04:42.074570942 +0000 UTC m=+642.497572180 I0313 10:04:42.106157 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:04:42.106141633 +0000 UTC m=+642.529142891 I0313 10:04:42.126693 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:04:42.178962 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:07:01.050936 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-13 10:07:01.050884183 +0000 UTC m=+781.473885421 I0313 10:07:01.051331 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:07:01.051400 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-13 10:07:01.051395363 +0000 UTC m=+781.474396601 I0313 10:07:01.076772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:07:01.076877 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-13 10:07:01.076865049 +0000 UTC m=+781.499866287 I0313 10:07:01.232338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:07:01.268452 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-x2t8g" condition "Approved" to 2026-03-13 10:07:01.268438909 +0000 UTC m=+781.691440147 I0313 10:07:01.289672 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-x2t8g" condition "Ready" to 2026-03-13 10:07:01.289653265 +0000 UTC m=+781.712654503 I0313 10:07:01.320994 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:07:01.320967911 +0000 UTC m=+781.743969149 I0313 10:07:01.345749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:08:02.266011 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-13 10:08:02.26599093 +0000 UTC m=+842.688992198 I0313 10:08:02.266100 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:08:02.266199 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-13 10:08:02.266187574 +0000 UTC m=+842.689188832 I0313 10:08:02.282811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:08:02.283030 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:08:02.283117 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-13 10:08:02.28310581 +0000 UTC m=+842.706107068 I0313 10:08:02.456725 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pjzk9" condition "Approved" to 2026-03-13 10:08:02.456701114 +0000 UTC m=+842.879702382 I0313 10:08:02.475975 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pjzk9" condition "Ready" to 2026-03-13 10:08:02.475965414 +0000 UTC m=+842.898966642 I0313 10:08:02.508237 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:08:02.508218017 +0000 UTC m=+842.931219285 I0313 10:08:02.533758 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:08:02.589341 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:11:02.571128 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0313 10:11:02.571222 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-13 10:11:02.571205598 +0000 UTC m=+1022.994206836 I0313 10:11:02.571609 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-13 10:11:02.571161977 +0000 UTC m=+1022.994163245 I0313 10:11:02.590019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:11:02.590175 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-13 10:11:02.590162642 +0000 UTC m=+1023.013163900 I0313 10:11:02.725924 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:11:02.761550 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-4p5sg" condition "Approved" to 2026-03-13 10:11:02.761530974 +0000 UTC m=+1023.184532192 I0313 10:11:02.780762 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-4p5sg" condition "Ready" to 2026-03-13 10:11:02.780745313 +0000 UTC m=+1023.203746551 I0313 10:11:02.811398 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:11:02.811385056 +0000 UTC m=+1023.234386294 I0313 10:11:02.847626 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:11:02.847963 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:11:02.847954759 +0000 UTC m=+1023.270955987 I0313 10:11:02.873528 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0313 10:11:02.873907 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-13 10:11:02.873895694 +0000 UTC m=+1023.296896932 I0313 10:11:02.874173 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"