I0319 09:00:28.336270 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0319 09:00:28.336517 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0319 09:00:28.336711 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0319 09:00:28.341919 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0319 09:00:28.342619 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0319 09:00:28.342750 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0319 09:00:28.342774 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0319 09:00:28.346526 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0319 09:00:28.364247 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0319 09:00:28.364620 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0319 09:00:28.372811 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0319 09:00:28.376142 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0319 09:00:28.378653 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0319 09:00:28.381595 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0319 09:00:28.384392 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0319 09:00:28.387466 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0319 09:00:28.393295 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0319 09:00:28.396846 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0319 09:00:28.399280 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0319 09:00:28.401774 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0319 09:00:28.403484 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0319 09:00:28.405266 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0319 09:00:28.407048 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0319 09:00:28.408845 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0319 09:00:28.408878 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0319 09:00:28.408892 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0319 09:00:28.408951 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0319 09:00:28.417129 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0319 09:00:28.421028 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0319 09:00:28.423575 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0319 09:00:28.423608 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0319 09:00:28.423641 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0319 09:00:28.426286 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0319 09:00:28.428765 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.429150 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.429177 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.429567 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.429708 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.429894 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.429930 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.430128 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.431030 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:28.464537 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0319 09:00:45.693356 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-19 09:00:45.693334098 +0000 UTC m=+17.393452470 I0319 09:00:46.402737 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-19 09:00:46.402713283 +0000 UTC m=+18.102831665 I0319 09:00:46.402910 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:00:46.402979 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-19 09:00:46.402970791 +0000 UTC m=+18.103089143 E0319 09:00:46.419164 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:00:46.419263 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-19 09:00:46.419251211 +0000 UTC m=+18.119369583 E0319 09:00:46.419297 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:00:46.422200 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:00:46.422338 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-19 09:00:46.422327588 +0000 UTC m=+18.122445930 E0319 09:00:46.429968 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0319 09:00:46.430100 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:00:46.430149 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:00:46.430205 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0319 09:00:46.441521 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:00:46.468008 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-tb7fc" condition "Approved" to 2026-03-19 09:00:46.467991099 +0000 UTC m=+18.168109481 I0319 09:00:46.480265 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-tb7fc" condition "Ready" to 2026-03-19 09:00:46.480256614 +0000 UTC m=+18.180374966 I0319 09:00:46.504141 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:00:46.504113081 +0000 UTC m=+18.204231453 I0319 09:00:46.524905 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:00:46.525279 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:00:46.525271335 +0000 UTC m=+18.225389687 I0319 09:00:46.547100 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:00:51.430496 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:00:51.430475346 +0000 UTC m=+23.130593718 I0319 09:01:10.153518 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-19 09:01:10.153504081 +0000 UTC m=+41.853622463 I0319 09:01:10.153809 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:01:10.153927 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-19 09:01:10.153915219 +0000 UTC m=+41.854033591 I0319 09:01:10.170040 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-19 09:01:10.170021987 +0000 UTC m=+41.870140369 I0319 09:01:10.177679 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:01:10.177821 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-19 09:01:10.177809335 +0000 UTC m=+41.877927687 I0319 09:01:10.497927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:01:10.543254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fqkmj" condition "Approved" to 2026-03-19 09:01:10.543238005 +0000 UTC m=+42.243356387 I0319 09:01:10.584711 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-fqkmj" condition "Ready" to 2026-03-19 09:01:10.584692707 +0000 UTC m=+42.284811059 I0319 09:01:10.621709 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:01:10.621693568 +0000 UTC m=+42.321811920 I0319 09:01:10.649149 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.338808 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:02.338914 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-19 09:03:02.338879058 +0000 UTC m=+154.038997430 I0319 09:03:02.339224 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-19 09:03:02.339163834 +0000 UTC m=+154.039282206 E0319 09:03:02.354935 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:03:02.354988 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-19 09:03:02.354979591 +0000 UTC m=+154.055097923 I0319 09:03:02.355025 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:03:02.357817 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.357946 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-19 09:03:02.35793496 +0000 UTC m=+154.058053342 I0319 09:03:02.367690 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-19 09:03:02.367683325 +0000 UTC m=+154.067801667 E0319 09:03:02.367950 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0319 09:03:02.367973 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:02.368002 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-19 09:03:02.367992692 +0000 UTC m=+154.068111054 E0319 09:03:02.368055 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0319 09:03:02.368096 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0319 09:03:02.368136 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0319 09:03:02.385153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.385280 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:03:02.385305 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-19 09:03:02.385296559 +0000 UTC m=+154.085414911 I0319 09:03:02.502145 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.510527 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-wlm82" condition "Approved" to 2026-03-19 09:03:02.510514238 +0000 UTC m=+154.210632590 I0319 09:03:02.530410 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-wlm82" condition "Ready" to 2026-03-19 09:03:02.530397766 +0000 UTC m=+154.230516138 I0319 09:03:02.818739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.849028 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-cm2nx" condition "Approved" to 2026-03-19 09:03:02.849011461 +0000 UTC m=+154.549129813 I0319 09:03:02.877338 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-cm2nx" condition "Ready" to 2026-03-19 09:03:02.877320269 +0000 UTC m=+154.577438621 I0319 09:03:02.912164 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:02.912136017 +0000 UTC m=+154.612254399 I0319 09:03:02.960603 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.961009 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:02.961001416 +0000 UTC m=+154.661119758 I0319 09:03:02.966584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.977843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:03:02.978243 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:02.978233751 +0000 UTC m=+154.678352103 I0319 09:03:07.369255 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:07.369239969 +0000 UTC m=+159.069358341 I0319 09:03:07.388018 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-wlm82" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:07.387998384 +0000 UTC m=+159.088116756 I0319 09:03:07.420511 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:03:07.420489425 +0000 UTC m=+159.120607777 I0319 09:03:07.444746 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:44.184473 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Ready" to 2026-03-19 09:05:44.184434938 +0000 UTC m=+315.884553290 I0319 09:05:44.184480 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-44.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:05:44.184550 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Issuing" to 2026-03-19 09:05:44.184544 +0000 UTC m=+315.884662352 I0319 09:05:44.200825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:44.200920 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-44.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:05:44.200938 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Issuing" to 2026-03-19 09:05:44.20093347 +0000 UTC m=+315.901051822 I0319 09:05:44.340054 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:44.351015 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-44.nip.io-tls-fzstr" condition "Approved" to 2026-03-19 09:05:44.351001711 +0000 UTC m=+316.051120083 I0319 09:05:44.370747 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-44.nip.io-tls-fzstr" condition "Ready" to 2026-03-19 09:05:44.370729977 +0000 UTC m=+316.070848359 I0319 09:05:44.397782 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:05:44.397766172 +0000 UTC m=+316.097884544 I0319 09:05:44.419893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:44.420408 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:05:44.420399778 +0000 UTC m=+316.120518130 I0319 09:05:44.433666 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:44.441704 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:05:44.442046 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:05:44.442037364 +0000 UTC m=+316.142155706 I0319 09:06:54.196534 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:06:54.196628 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-19 09:06:54.19661468 +0000 UTC m=+385.896733072 I0319 09:06:54.196882 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:06:54.196849495 +0000 UTC m=+385.896967857 E0319 09:06:54.211464 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:06:54.211535 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-19 09:06:54.211523001 +0000 UTC m=+385.911641383 E0319 09:06:54.211607 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0319 09:06:54.212892 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:54.213008 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:06:54.212996751 +0000 UTC m=+385.913115103 E0319 09:06:54.230442 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0319 09:06:54.230769 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:06:54.230857 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0319 09:06:54.230934 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0319 09:06:54.236847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:54.237008 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-19 09:06:54.236999985 +0000 UTC m=+385.937118327 I0319 09:06:54.241466 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hfmkh" condition "Approved" to 2026-03-19 09:06:54.241448076 +0000 UTC m=+385.941566458 I0319 09:06:54.254469 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-hfmkh" condition "Ready" to 2026-03-19 09:06:54.254456989 +0000 UTC m=+385.954575341 I0319 09:06:54.277728 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:54.277709778 +0000 UTC m=+385.977828130 I0319 09:06:54.302526 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:06:59.231707 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:06:59.231684882 +0000 UTC m=+390.931803254 I0319 09:07:37.860684 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-19 09:07:37.860645943 +0000 UTC m=+429.560764295 I0319 09:07:37.861011 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:07:37.861054 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-19 09:07:37.861046421 +0000 UTC m=+429.561164763 I0319 09:07:37.874028 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-19 09:07:37.874013982 +0000 UTC m=+429.574132324 I0319 09:07:37.874282 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:07:37.874313 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-19 09:07:37.874307508 +0000 UTC m=+429.574425850 I0319 09:07:37.877988 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:07:37.878018 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-19 09:07:37.878011724 +0000 UTC m=+429.578130066 I0319 09:07:37.878849 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-19 09:07:37.87883718 +0000 UTC m=+429.578955522 I0319 09:07:37.914785 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:37.914839 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-19 09:07:37.914833467 +0000 UTC m=+429.614951809 I0319 09:07:37.924088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:37.924160 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:07:37.924186 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-19 09:07:37.924181156 +0000 UTC m=+429.624299498 I0319 09:07:37.926340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:37.927734 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-19 09:07:37.927719778 +0000 UTC m=+429.627838120 I0319 09:07:38.012931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:38.052574 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fp2v5" condition "Approved" to 2026-03-19 09:07:38.052556159 +0000 UTC m=+429.752674511 I0319 09:07:38.082759 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fp2v5" condition "Ready" to 2026-03-19 09:07:38.082688378 +0000 UTC m=+429.782806750 I0319 09:07:38.119443 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:07:38.11942152 +0000 UTC m=+429.819539862 I0319 09:07:38.141765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:38.185887 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" E0319 09:07:38.228126 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"grafana-tls-pcs66\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" I0319 09:07:38.230978 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hxlrh" condition "Approved" to 2026-03-19 09:07:38.230966204 +0000 UTC m=+429.931084556 I0319 09:07:38.250874 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-hxlrh" condition "Ready" to 2026-03-19 09:07:38.250861685 +0000 UTC m=+429.950980027 I0319 09:07:38.254689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-mkfpj" condition "Approved" to 2026-03-19 09:07:38.254677982 +0000 UTC m=+429.954796324 I0319 09:07:38.458648 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-mkfpj" condition "Ready" to 2026-03-19 09:07:38.458634063 +0000 UTC m=+430.158752405 I0319 09:07:38.748626 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:07:38.748617411 +0000 UTC m=+430.448735753 E0319 09:07:38.951011 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-7hzkt\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0319 09:07:39.005287 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:07:39.005276595 +0000 UTC m=+430.705394937 I0319 09:07:39.053163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:39.189913 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:07:39.189898335 +0000 UTC m=+430.890016707 I0319 09:07:39.199111 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:39.351515 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:39.351844 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:07:39.351838286 +0000 UTC m=+431.051956628 I0319 09:07:39.751238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:39.800353 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:45.911647 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:07:45.911672 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" condition "Ready" to 2026-03-19 09:07:45.911648392 +0000 UTC m=+437.611766764 I0319 09:07:45.911707 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" condition "Issuing" to 2026-03-19 09:07:45.911693493 +0000 UTC m=+437.611811845 I0319 09:07:45.929568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:45.929656 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:07:45.929682 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" condition "Issuing" to 2026-03-19 09:07:45.929675626 +0000 UTC m=+437.629793978 I0319 09:07:46.163204 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ghpzw-5f47w" condition "Approved" to 2026-03-19 09:07:46.163185203 +0000 UTC m=+437.863303585 I0319 09:07:46.182087 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-ghpzw-5f47w" condition "Ready" to 2026-03-19 09:07:46.182071245 +0000 UTC m=+437.882189587 I0319 09:07:46.219567 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:07:46.219549641 +0000 UTC m=+437.919667983 I0319 09:07:46.242436 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:07:46.304158 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-ghpzw-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:12.759547 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:08:12.759580 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-19 09:08:12.75957095 +0000 UTC m=+464.459689292 I0319 09:08:12.759722 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-19 09:08:12.759702623 +0000 UTC m=+464.459821005 I0319 09:08:12.775185 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:12.775247 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:08:12.775265 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-19 09:08:12.775259218 +0000 UTC m=+464.475377570 I0319 09:08:12.905648 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:12.911274 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-gt99g" condition "Approved" to 2026-03-19 09:08:12.911255936 +0000 UTC m=+464.611374288 I0319 09:08:12.928743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-gt99g" condition "Ready" to 2026-03-19 09:08:12.928729878 +0000 UTC m=+464.628848230 I0319 09:08:12.954950 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:12.954936247 +0000 UTC m=+464.655054599 I0319 09:08:12.972754 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:12.973212 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:12.973201687 +0000 UTC m=+464.673320049 I0319 09:08:12.992993 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:08:12.993415 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:08:12.993403954 +0000 UTC m=+464.693522306 I0319 09:11:21.944039 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-19 09:11:21.944021661 +0000 UTC m=+653.644140033 I0319 09:11:21.944184 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:11:21.944277 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-19 09:11:21.944265586 +0000 UTC m=+653.644383968 I0319 09:11:21.960599 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:21.960708 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-19 09:11:21.96069698 +0000 UTC m=+653.660815362 I0319 09:11:22.050383 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:22.078148 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-v6tgf" condition "Approved" to 2026-03-19 09:11:22.078111201 +0000 UTC m=+653.778229583 I0319 09:11:22.098684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-v6tgf" condition "Ready" to 2026-03-19 09:11:22.098667876 +0000 UTC m=+653.798786258 I0319 09:11:22.128471 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:11:22.128460271 +0000 UTC m=+653.828578623 I0319 09:11:22.152528 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:22.152799 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:11:22.152790801 +0000 UTC m=+653.852909163 I0319 09:11:22.170354 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:11:22.176567 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:13:46.234155 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-19 09:13:46.23411491 +0000 UTC m=+797.934233292 I0319 09:13:46.234149 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:13:46.234256 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-19 09:13:46.234242752 +0000 UTC m=+797.934361134 I0319 09:13:46.251128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:13:46.251223 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:13:46.251244 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-19 09:13:46.251237704 +0000 UTC m=+797.951356076 I0319 09:13:46.506819 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-hvwqq" condition "Approved" to 2026-03-19 09:13:46.506772176 +0000 UTC m=+798.206890548 I0319 09:13:46.529909 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-hvwqq" condition "Ready" to 2026-03-19 09:13:46.529897429 +0000 UTC m=+798.230015781 I0319 09:13:46.555178 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:13:46.555160574 +0000 UTC m=+798.255278956 I0319 09:13:46.575382 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:13:46.575680 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:13:46.575672524 +0000 UTC m=+798.275790876 I0319 09:13:46.602538 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:13:46.602989 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:46.146917 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:14:46.146996 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-19 09:14:46.146987483 +0000 UTC m=+857.847105825 I0319 09:14:46.147001 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-19 09:14:46.146981843 +0000 UTC m=+857.847100225 I0319 09:14:46.164104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:46.164193 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-19 09:14:46.164183568 +0000 UTC m=+857.864301940 I0319 09:14:46.349323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:14:46.378854 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pr4sm" condition "Approved" to 2026-03-19 09:14:46.378840581 +0000 UTC m=+858.078958923 I0319 09:14:46.395975 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pr4sm" condition "Ready" to 2026-03-19 09:14:46.395965214 +0000 UTC m=+858.096083556 I0319 09:14:46.422324 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:14:46.422312281 +0000 UTC m=+858.122430633 I0319 09:14:46.442274 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:40.532580 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-19 09:17:40.532554352 +0000 UTC m=+1032.232672734 I0319 09:17:40.532550 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:17:40.532935 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-19 09:17:40.532894658 +0000 UTC m=+1032.233013010 I0319 09:17:40.551620 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:40.551930 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0319 09:17:40.551971 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-19 09:17:40.551960999 +0000 UTC m=+1032.252079371 I0319 09:17:40.820581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:40.830477 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tfq2v" condition "Approved" to 2026-03-19 09:17:40.830449678 +0000 UTC m=+1032.530568050 I0319 09:17:40.850110 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-tfq2v" condition "Ready" to 2026-03-19 09:17:40.85009624 +0000 UTC m=+1032.550214592 I0319 09:17:40.880028 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:17:40.880011217 +0000 UTC m=+1032.580129589 I0319 09:17:40.901311 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0319 09:17:40.901712 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-19 09:17:40.90170412 +0000 UTC m=+1032.601822462 I0319 09:17:40.922412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"