I0314 01:32:21.742517 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0314 01:32:21.742650 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0314 01:32:21.742704 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0314 01:32:21.745062 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0314 01:32:21.745460 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0314 01:32:21.745667 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0314 01:32:21.745679 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0314 01:32:21.747394 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0314 01:32:21.767792 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0314 01:32:21.774160 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0314 01:32:21.774360 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0314 01:32:21.774432 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0314 01:32:21.784354 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0314 01:32:21.788123 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0314 01:32:21.788260 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0314 01:32:21.790227 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0314 01:32:21.792249 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0314 01:32:21.794198 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0314 01:32:21.796903 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0314 01:32:21.801878 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0314 01:32:21.801966 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0314 01:32:21.804631 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0314 01:32:21.807215 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0314 01:32:21.809692 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0314 01:32:21.812241 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0314 01:32:21.816475 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0314 01:32:21.820696 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0314 01:32:21.823848 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0314 01:32:21.823996 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0314 01:32:21.829367 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0314 01:32:21.832982 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0314 01:32:21.833035 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0314 01:32:21.836622 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0314 01:32:21.839247 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.839654 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.840207 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.840402 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.856617 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.891115 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.894802 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.911332 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.928424 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:21.950806 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0314 01:32:34.758501 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-14 01:32:34.758477576 +0000 UTC m=+13.049220194 I0314 01:32:35.533975 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-14 01:32:35.533958289 +0000 UTC m=+13.824700917 I0314 01:32:35.534039 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:32:35.534098 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-14 01:32:35.534090343 +0000 UTC m=+13.824832971 E0314 01:32:35.551735 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 01:32:35.551788 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-14 01:32:35.551780906 +0000 UTC m=+13.842523504 E0314 01:32:35.551813 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 01:32:35.554843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:32:35.554917 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-14 01:32:35.554908772 +0000 UTC m=+13.845651360 E0314 01:32:35.567044 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0314 01:32:35.567280 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 01:32:35.567340 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 01:32:35.567549 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0314 01:32:35.570330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:32:35.571017 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-14 01:32:35.570998441 +0000 UTC m=+13.861741069 I0314 01:32:35.574294 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:32:35.578810 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jxtc8" condition "Approved" to 2026-03-14 01:32:35.578796874 +0000 UTC m=+13.869539482 I0314 01:32:35.591060 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-jxtc8" condition "Ready" to 2026-03-14 01:32:35.591048538 +0000 UTC m=+13.881791136 I0314 01:32:35.629383 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:32:35.629367985 +0000 UTC m=+13.920110603 I0314 01:32:35.650743 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:32:35.701582 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:32:40.567451 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:32:40.567437618 +0000 UTC m=+18.858180206 I0314 01:33:01.384774 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:33:01.384904 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-14 01:33:01.384859747 +0000 UTC m=+39.675602365 I0314 01:33:01.385360 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-14 01:33:01.384773454 +0000 UTC m=+39.675516052 I0314 01:33:01.394474 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-14 01:33:01.394458558 +0000 UTC m=+39.685201146 I0314 01:33:01.408502 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:33:01.408619 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-14 01:33:01.408608193 +0000 UTC m=+39.699350791 I0314 01:33:01.473367 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:33:01.512589 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hrjms" condition "Approved" to 2026-03-14 01:33:01.512578356 +0000 UTC m=+39.803320954 I0314 01:33:01.542439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-hrjms" condition "Ready" to 2026-03-14 01:33:01.542402048 +0000 UTC m=+39.833144636 I0314 01:33:01.579293 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:33:01.579278652 +0000 UTC m=+39.870021250 I0314 01:33:01.649321 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:33:01.650089 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:33:01.65007756 +0000 UTC m=+39.940820158 I0314 01:33:01.820846 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:03.138183 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:35:03.138295 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-14 01:35:03.138254791 +0000 UTC m=+161.428997419 I0314 01:35:03.138771 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-14 01:35:03.138742634 +0000 UTC m=+161.429485252 E0314 01:35:03.155656 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0314 01:35:03.155747 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-14 01:35:03.15573755 +0000 UTC m=+161.446480138 I0314 01:35:03.155771 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0314 01:35:03.156677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:03.156813 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:35:03.156883 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-14 01:35:03.156873109 +0000 UTC m=+161.447615727 E0314 01:35:03.165372 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0314 01:35:03.167306 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0314 01:35:03.167354 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0314 01:35:03.167401 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0314 01:35:03.171004 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:35:03.171020 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-14 01:35:03.171011821 +0000 UTC m=+161.461754419 I0314 01:35:03.171037 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-14 01:35:03.171029381 +0000 UTC m=+161.461772009 I0314 01:35:03.186999 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:03.187172 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-14 01:35:03.187156505 +0000 UTC m=+161.477899103 I0314 01:35:03.345959 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bqxf7" condition "Approved" to 2026-03-14 01:35:03.34592487 +0000 UTC m=+161.636667498 I0314 01:35:03.385052 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-bqxf7" condition "Ready" to 2026-03-14 01:35:03.385036006 +0000 UTC m=+161.675778604 I0314 01:35:03.412530 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:03.412513237 +0000 UTC m=+161.703255835 I0314 01:35:03.429748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:03.430295 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:03.430283883 +0000 UTC m=+161.721026511 I0314 01:35:03.448300 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:03.571549 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:03.607628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-8tx8j" condition "Approved" to 2026-03-14 01:35:03.607614386 +0000 UTC m=+161.898356984 I0314 01:35:03.626026 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-8tx8j" condition "Ready" to 2026-03-14 01:35:03.626005828 +0000 UTC m=+161.916748446 I0314 01:35:08.166872 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:08.16685753 +0000 UTC m=+166.457600158 I0314 01:35:08.192431 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-8tx8j" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:08.19241137 +0000 UTC m=+166.483153998 I0314 01:35:08.227847 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:08.227832029 +0000 UTC m=+166.518574627 I0314 01:35:08.252558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:08.253166 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:08.253154284 +0000 UTC m=+166.543896902 I0314 01:35:08.270489 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:35:08.271058 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:35:08.271044513 +0000 UTC m=+166.561787111 I0314 01:37:51.330157 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-223.nip.io-tls" condition "Ready" to 2026-03-14 01:37:51.330102461 +0000 UTC m=+329.620845079 I0314 01:37:51.330374 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-223.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:37:51.330611 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-223.nip.io-tls" condition "Issuing" to 2026-03-14 01:37:51.330601704 +0000 UTC m=+329.621344372 I0314 01:37:51.346912 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-223.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-223.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:37:51.347031 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-223.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:37:51.347059 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-223.nip.io-tls" condition "Issuing" to 2026-03-14 01:37:51.347049761 +0000 UTC m=+329.637792359 I0314 01:37:51.600465 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-223.nip.io-tls-ljxhs" condition "Approved" to 2026-03-14 01:37:51.600443515 +0000 UTC m=+329.891186133 I0314 01:37:51.619779 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-223.nip.io-tls-ljxhs" condition "Ready" to 2026-03-14 01:37:51.619762108 +0000 UTC m=+329.910504736 I0314 01:37:51.646671 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-223.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:37:51.646652513 +0000 UTC m=+329.937395131 I0314 01:37:51.665601 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-223.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-223.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:37:51.666554 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-223.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:37:51.666540302 +0000 UTC m=+329.957282930 I0314 01:37:51.681855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-223.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-223.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:37:51.682316 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-223.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:37:51.682304461 +0000 UTC m=+329.973047079 I0314 01:37:51.686526 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-223.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-223.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:02.072954 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-14 01:39:02.072929681 +0000 UTC m=+400.363672309 I0314 01:39:02.073472 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:02.073532 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-14 01:39:02.073519157 +0000 UTC m=+400.364261785 E0314 01:39:02.086744 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 01:39:02.086825 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-14 01:39:02.08681753 +0000 UTC m=+400.377560118 E0314 01:39:02.086903 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0314 01:39:02.088040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:02.088138 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:02.088171 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-14 01:39:02.088159216 +0000 UTC m=+400.378901844 E0314 01:39:02.096955 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0314 01:39:02.098017 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 01:39:02.098118 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0314 01:39:02.098253 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0314 01:39:02.155445 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2pdps" condition "Approved" to 2026-03-14 01:39:02.155429409 +0000 UTC m=+400.446172007 I0314 01:39:02.168887 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-2pdps" condition "Ready" to 2026-03-14 01:39:02.168875665 +0000 UTC m=+400.459618263 I0314 01:39:02.195915 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:02.195896502 +0000 UTC m=+400.486639120 I0314 01:39:02.215263 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:02.216069 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:02.216060376 +0000 UTC m=+400.506802974 I0314 01:39:02.236208 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:07.098241 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:07.098226076 +0000 UTC m=+405.388968704 I0314 01:39:47.169098 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-14 01:39:47.169076961 +0000 UTC m=+445.459819549 I0314 01:39:47.169544 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:47.169609 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-14 01:39:47.169603314 +0000 UTC m=+445.460345902 I0314 01:39:47.173370 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:47.173449 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-14 01:39:47.173445005 +0000 UTC m=+445.464187603 I0314 01:39:47.173493 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-14 01:39:47.173474395 +0000 UTC m=+445.464216993 I0314 01:39:47.173533 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-14 01:39:47.173528036 +0000 UTC m=+445.464270624 I0314 01:39:47.173587 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:47.173647 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-14 01:39:47.173639929 +0000 UTC m=+445.464382527 I0314 01:39:47.254972 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.255103 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-14 01:39:47.255095048 +0000 UTC m=+445.545837646 I0314 01:39:47.255256 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.255301 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-14 01:39:47.255296823 +0000 UTC m=+445.546039421 I0314 01:39:47.257366 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.257428 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-14 01:39:47.257424058 +0000 UTC m=+445.548166656 I0314 01:39:47.482372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.519615 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-bhcbp" condition "Approved" to 2026-03-14 01:39:47.519600716 +0000 UTC m=+445.810343304 I0314 01:39:47.519684 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.530511 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.540856 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-bhcbp" condition "Ready" to 2026-03-14 01:39:47.540843048 +0000 UTC m=+445.831585646 I0314 01:39:47.571544 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:47.571533067 +0000 UTC m=+445.862275655 I0314 01:39:47.602545 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.603307 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:47.603299363 +0000 UTC m=+445.894041951 I0314 01:39:47.631550 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.637251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:47.644308 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6f9qh" condition "Approved" to 2026-03-14 01:39:47.644291669 +0000 UTC m=+445.935034267 I0314 01:39:47.680081 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-6f9qh" condition "Ready" to 2026-03-14 01:39:47.680068209 +0000 UTC m=+445.970810807 I0314 01:39:48.013673 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" resource_name="alertmanager-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="alertmanager-tls-6f9qh" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="alertmanager-tls-b45b8" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0314 01:39:48.300911 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rndhd" condition "Approved" to 2026-03-14 01:39:48.300894554 +0000 UTC m=+446.591637152 I0314 01:39:48.370346 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zznxd" condition "Approved" to 2026-03-14 01:39:48.370333239 +0000 UTC m=+446.661075837 I0314 01:39:48.534018 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rndhd" condition "Ready" to 2026-03-14 01:39:48.534007596 +0000 UTC m=+446.824750194 E0314 01:39:48.811754 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-b45b8\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0314 01:39:48.877516 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-zznxd" condition "Ready" to 2026-03-14 01:39:48.877498879 +0000 UTC m=+447.168241497 I0314 01:39:49.114368 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" resource_name="prometheus-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="prometheus-tls-rndhd" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="prometheus-tls-pfmzk" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0314 01:39:49.617321 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:49.617303187 +0000 UTC m=+447.908045805 I0314 01:39:49.672053 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cdzbn" condition "Approved" to 2026-03-14 01:39:49.67202172 +0000 UTC m=+447.962764338 I0314 01:39:49.816968 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:49.817597 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:49.817586176 +0000 UTC m=+448.108328804 I0314 01:39:50.125504 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-cdzbn" condition "Ready" to 2026-03-14 01:39:50.125489243 +0000 UTC m=+448.416231841 I0314 01:39:50.568444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:50.617410 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:50.667355 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:50.667340764 +0000 UTC m=+448.958083392 I0314 01:39:50.815384 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:50.816119 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:50.816108433 +0000 UTC m=+449.106851031 I0314 01:39:51.549461 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:51.552512 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:58.572788 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" condition "Ready" to 2026-03-14 01:39:58.572765347 +0000 UTC m=+456.863507985 I0314 01:39:58.572829 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:58.572846 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" condition "Issuing" to 2026-03-14 01:39:58.572843169 +0000 UTC m=+456.863585757 I0314 01:39:58.591524 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:58.591590 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:39:58.591605 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" condition "Issuing" to 2026-03-14 01:39:58.591600317 +0000 UTC m=+456.882342905 I0314 01:39:58.935589 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:39:58.945602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-8kfxr-xkb6x" condition "Approved" to 2026-03-14 01:39:58.945576762 +0000 UTC m=+457.236319350 I0314 01:39:58.972317 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-8kfxr-xkb6x" condition "Ready" to 2026-03-14 01:39:58.972301537 +0000 UTC m=+457.263044135 I0314 01:39:59.011850 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:39:59.011834905 +0000 UTC m=+457.302577493 I0314 01:39:59.033419 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-8kfxr-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:40:30.729469 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:40:30.729523 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-14 01:40:30.72951179 +0000 UTC m=+489.020254418 I0314 01:40:30.729589 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-14 01:40:30.729558851 +0000 UTC m=+489.020301479 I0314 01:40:30.744893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:40:30.745003 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:40:30.745155 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-14 01:40:30.745146171 +0000 UTC m=+489.035888789 I0314 01:40:31.038385 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:40:31.046445 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-7s2jw" condition "Approved" to 2026-03-14 01:40:31.046405559 +0000 UTC m=+489.337148157 I0314 01:40:31.067648 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-7s2jw" condition "Ready" to 2026-03-14 01:40:31.067636849 +0000 UTC m=+489.358379447 I0314 01:40:31.095714 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:40:31.095699946 +0000 UTC m=+489.386442544 I0314 01:40:31.112428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:40:31.112913 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:40:31.112901418 +0000 UTC m=+489.403644036 I0314 01:40:31.122572 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:40:31.129890 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:40:31.130118 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:40:31.13011202 +0000 UTC m=+489.420854618 I0314 01:43:42.510560 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-14 01:43:42.5105154 +0000 UTC m=+680.801257998 I0314 01:43:42.510693 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:43:42.510755 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-14 01:43:42.510742486 +0000 UTC m=+680.801485104 I0314 01:43:42.534077 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:43:42.534166 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:43:42.534189 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-14 01:43:42.534181465 +0000 UTC m=+680.824924063 I0314 01:43:42.731933 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:43:42.742759 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-jcc8r" condition "Approved" to 2026-03-14 01:43:42.742747337 +0000 UTC m=+681.033489925 I0314 01:43:42.762988 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-jcc8r" condition "Ready" to 2026-03-14 01:43:42.762976731 +0000 UTC m=+681.053719329 I0314 01:43:42.792847 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:43:42.79283214 +0000 UTC m=+681.083574748 I0314 01:43:42.808608 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:43:42.809380 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:43:42.809371067 +0000 UTC m=+681.100113665 I0314 01:43:42.819621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:43:42.835568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:46:05.970949 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:46:05.971033 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-14 01:46:05.97102617 +0000 UTC m=+824.261768768 I0314 01:46:05.971487 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-14 01:46:05.971466822 +0000 UTC m=+824.262209500 I0314 01:46:05.989436 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:46:05.989558 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-14 01:46:05.989546033 +0000 UTC m=+824.280288631 I0314 01:46:06.248911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:46:06.282110 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-nplxd" condition "Approved" to 2026-03-14 01:46:06.282092291 +0000 UTC m=+824.572834899 I0314 01:46:06.301880 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-nplxd" condition "Ready" to 2026-03-14 01:46:06.301868098 +0000 UTC m=+824.592610696 I0314 01:46:06.337822 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:46:06.337808335 +0000 UTC m=+824.628550963 I0314 01:46:06.355839 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:47:14.848901 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-14 01:47:14.848886813 +0000 UTC m=+893.139629401 I0314 01:47:14.849128 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:47:14.849217 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-14 01:47:14.849207692 +0000 UTC m=+893.139950310 I0314 01:47:14.867035 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:47:14.867100 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:47:14.867118 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-14 01:47:14.867110579 +0000 UTC m=+893.157853177 I0314 01:47:15.236957 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:47:15.245583 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-hx2gz" condition "Approved" to 2026-03-14 01:47:15.245568829 +0000 UTC m=+893.536311417 I0314 01:47:15.262651 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-hx2gz" condition "Ready" to 2026-03-14 01:47:15.262638736 +0000 UTC m=+893.553381324 I0314 01:47:15.295048 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:47:15.295026443 +0000 UTC m=+893.585769061 I0314 01:47:15.318901 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:47:15.319215 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:47:15.319205562 +0000 UTC m=+893.609948160 I0314 01:47:15.342215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:50:17.317417 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-14 01:50:17.31738105 +0000 UTC m=+1075.608123648 I0314 01:50:17.317595 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:50:17.317668 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-14 01:50:17.317660548 +0000 UTC m=+1075.608403176 I0314 01:50:17.336024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:50:17.336174 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0314 01:50:17.336205 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-14 01:50:17.33619651 +0000 UTC m=+1075.626939138 I0314 01:50:17.534509 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:50:17.543720 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-6xshl" condition "Approved" to 2026-03-14 01:50:17.543705563 +0000 UTC m=+1075.834448191 I0314 01:50:17.559932 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-6xshl" condition "Ready" to 2026-03-14 01:50:17.559920283 +0000 UTC m=+1075.850662911 I0314 01:50:17.586237 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:50:17.586229043 +0000 UTC m=+1075.876971641 I0314 01:50:17.606578 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0314 01:50:17.606947 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-14 01:50:17.606940903 +0000 UTC m=+1075.897683501 I0314 01:50:17.625619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"