I0402 01:07:39.668351 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0402 01:07:39.668510 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0402 01:07:39.668654 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0402 01:07:39.675631 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0402 01:07:39.676687 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0402 01:07:39.676715 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0402 01:07:39.676862 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0402 01:07:39.681092 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0402 01:07:39.695145 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0402 01:07:39.699123 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0402 01:07:39.701824 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0402 01:07:39.702055 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0402 01:07:39.709358 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0402 01:07:39.709444 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0402 01:07:39.713933 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0402 01:07:39.716770 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0402 01:07:39.719259 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0402 01:07:39.721702 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0402 01:07:39.721749 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0402 01:07:39.724378 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0402 01:07:39.727518 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0402 01:07:39.732332 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0402 01:07:39.735181 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0402 01:07:39.737243 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0402 01:07:39.739017 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0402 01:07:39.739053 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0402 01:07:39.739063 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0402 01:07:39.741124 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0402 01:07:39.743118 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0402 01:07:39.744818 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0402 01:07:39.746601 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0402 01:07:39.752422 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0402 01:07:39.752557 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0402 01:07:39.755399 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.756497 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.756703 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.756846 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.757562 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.757643 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.757858 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.757953 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.758637 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:39.853688 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0402 01:07:53.004965 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-02 01:07:53.004945877 +0000 UTC m=+13.371681438 I0402 01:07:53.746494 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:07:53.746503 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-02 01:07:53.746484992 +0000 UTC m=+14.113220543 I0402 01:07:53.746588 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 01:07:53.746577634 +0000 UTC m=+14.113313195 E0402 01:07:53.833595 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 01:07:53.833748 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-02 01:07:53.833718885 +0000 UTC m=+14.200454436 E0402 01:07:53.833787 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 01:07:53.838426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:07:53.838524 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:07:53.838552 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-02 01:07:53.838545196 +0000 UTC m=+14.205280757 E0402 01:07:53.844105 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0402 01:07:53.844246 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 01:07:53.844310 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 01:07:53.844356 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0402 01:07:53.881579 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-zkjm8" condition "Approved" to 2026-04-02 01:07:53.881560682 +0000 UTC m=+14.248296233 I0402 01:07:53.897450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-zkjm8" condition "Ready" to 2026-04-02 01:07:53.897417169 +0000 UTC m=+14.264152690 I0402 01:07:53.923590 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:07:53.923575173 +0000 UTC m=+14.290310724 I0402 01:07:53.940111 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:07:53.940785 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:07:53.940756023 +0000 UTC m=+14.307491574 I0402 01:07:53.956748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:07:54.128172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:07:58.844728 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:07:58.844706985 +0000 UTC m=+19.211442536 I0402 01:08:24.246069 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:08:24.246115 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-02 01:08:24.246105363 +0000 UTC m=+44.612840914 I0402 01:08:24.248051 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-02 01:08:24.248030511 +0000 UTC m=+44.614766072 I0402 01:08:24.263885 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-02 01:08:24.263845106 +0000 UTC m=+44.630580667 I0402 01:08:24.270620 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:08:24.270768 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-02 01:08:24.270757358 +0000 UTC m=+44.637492879 I0402 01:08:24.403684 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:08:24.640001 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-l5xtv" condition "Approved" to 2026-04-02 01:08:24.639981767 +0000 UTC m=+45.006717298 I0402 01:08:24.676049 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-l5xtv" condition "Ready" to 2026-04-02 01:08:24.676035077 +0000 UTC m=+45.042770608 E0402 01:08:24.676127 1 selfsigned.go:127] "Referenced secret openstack/rabbitmq-messaging-topology-operator-webhook-5kw9w not found" err="secret \"rabbitmq-messaging-topology-operator-webhook-5kw9w\" not found" logger="cert-manager.certificaterequests-issuer-selfsigned.sign" resource_name="rabbitmq-messaging-topology-operator-webhook-l5xtv" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" E0402 01:08:24.693908 1 selfsigned.go:127] "Referenced secret openstack/rabbitmq-messaging-topology-operator-webhook-5kw9w not found" err="secret \"rabbitmq-messaging-topology-operator-webhook-5kw9w\" not found" logger="cert-manager.certificaterequests-issuer-selfsigned.sign" resource_name="rabbitmq-messaging-topology-operator-webhook-l5xtv" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" I0402 01:08:24.843087 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" resource_name="rabbitmq-messaging-topology-operator-webhook" resource_namespace="openstack" resource_kind="Certificate" resource_version="v1" resource_name="rabbitmq-messaging-topology-operator-webhook-l5xtv" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" resource_name="rabbitmq-messaging-topology-operator-webhook-5kw9w" resource_namespace="openstack" resource_kind="Secret" resource_version="v1" I0402 01:08:24.869386 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-kzmsx" condition "Approved" to 2026-04-02 01:08:24.869368964 +0000 UTC m=+45.236104485 I0402 01:08:24.889225 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-kzmsx" condition "Ready" to 2026-04-02 01:08:24.889208669 +0000 UTC m=+45.255944210 I0402 01:08:24.923657 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:08:24.923640109 +0000 UTC m=+45.290375650 I0402 01:08:24.947248 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:08:24.947700 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:08:24.947691489 +0000 UTC m=+45.314427020 I0402 01:08:24.959137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:08:24.972632 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:38.946118 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:10:38.946539 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-02 01:10:38.946526228 +0000 UTC m=+179.313261779 I0402 01:10:38.946209 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-02 01:10:38.94618414 +0000 UTC m=+179.312919691 E0402 01:10:38.962084 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 01:10:38.962255 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-02 01:10:38.96220894 +0000 UTC m=+179.328944501 I0402 01:10:38.962420 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 01:10:38.965093 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:38.965185 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-02 01:10:38.965179115 +0000 UTC m=+179.331914646 E0402 01:10:38.972504 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0402 01:10:38.972602 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0402 01:10:38.972631 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0402 01:10:38.972668 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0402 01:10:38.980055 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-02 01:10:38.980044348 +0000 UTC m=+179.346779889 I0402 01:10:38.980131 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:10:38.980175 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-02 01:10:38.980165901 +0000 UTC m=+179.346901432 I0402 01:10:38.998829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:38.998944 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-02 01:10:38.99893556 +0000 UTC m=+179.365671091 I0402 01:10:39.145897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:39.183703 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-ntn5w" condition "Approved" to 2026-04-02 01:10:39.183683689 +0000 UTC m=+179.550419260 I0402 01:10:39.202082 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-ntn5w" condition "Ready" to 2026-04-02 01:10:39.20207145 +0000 UTC m=+179.568806981 I0402 01:10:39.276320 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:39.304852 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-qjx4h" condition "Approved" to 2026-04-02 01:10:39.304823895 +0000 UTC m=+179.671559456 I0402 01:10:39.331967 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-qjx4h" condition "Ready" to 2026-04-02 01:10:39.331940604 +0000 UTC m=+179.698676135 I0402 01:10:39.362352 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:39.362337076 +0000 UTC m=+179.729072627 I0402 01:10:39.388506 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:39.388800 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:39.388791819 +0000 UTC m=+179.755527350 I0402 01:10:39.404907 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:39.405231 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:39.405222461 +0000 UTC m=+179.771958012 I0402 01:10:43.973195 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:43.973181029 +0000 UTC m=+184.339916590 I0402 01:10:43.988500 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-ntn5w" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:43.988487313 +0000 UTC m=+184.355222854 I0402 01:10:44.017247 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:44.017234663 +0000 UTC m=+184.383970194 I0402 01:10:44.035048 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:10:44.038845 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:10:44.038833704 +0000 UTC m=+184.405569235 I0402 01:10:44.058874 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:13:15.084887 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-43.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:13:15.084926 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-43.nip.io-tls" condition "Issuing" to 2026-04-02 01:13:15.084916999 +0000 UTC m=+335.451652560 I0402 01:13:15.084942 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-43.nip.io-tls" condition "Ready" to 2026-04-02 01:13:15.084931929 +0000 UTC m=+335.451667490 I0402 01:13:15.114172 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-43.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-43.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:13:15.114273 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-43.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:13:15.114300 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-43.nip.io-tls" condition "Issuing" to 2026-04-02 01:13:15.114291905 +0000 UTC m=+335.481027456 I0402 01:13:15.551724 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-43.nip.io-tls-jhgpf" condition "Approved" to 2026-04-02 01:13:15.551705696 +0000 UTC m=+335.918441247 I0402 01:13:15.571279 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-43.nip.io-tls-jhgpf" condition "Ready" to 2026-04-02 01:13:15.571266046 +0000 UTC m=+335.938001597 I0402 01:13:15.596939 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-43.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:13:15.596928648 +0000 UTC m=+335.963664179 I0402 01:13:15.616402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-43.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-43.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:13:15.616732 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-43.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:13:15.616725773 +0000 UTC m=+335.983461294 I0402 01:13:15.634481 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-43.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-43.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:14:24.246813 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:14:24.246885 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-02 01:14:24.246867827 +0000 UTC m=+404.613603388 I0402 01:14:24.247011 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-02 01:14:24.24696283 +0000 UTC m=+404.613698381 E0402 01:14:24.260373 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 01:14:24.260420 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-02 01:14:24.260412436 +0000 UTC m=+404.627147957 E0402 01:14:24.260466 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0402 01:14:24.262104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:14:24.262181 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-02 01:14:24.26217583 +0000 UTC m=+404.628911361 E0402 01:14:24.270157 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0402 01:14:24.270350 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 01:14:24.270392 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0402 01:14:24.270427 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0402 01:14:24.283992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:14:24.308300 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8n782" condition "Approved" to 2026-04-02 01:14:24.308280984 +0000 UTC m=+404.675016535 I0402 01:14:24.319863 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8n782" condition "Ready" to 2026-04-02 01:14:24.319853035 +0000 UTC m=+404.686588586 I0402 01:14:24.338023 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:14:24.338010149 +0000 UTC m=+404.704745700 I0402 01:14:24.357880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:14:29.270822 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:14:29.270808391 +0000 UTC m=+409.637543952 I0402 01:15:05.833359 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:15:05.833391 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-02 01:15:05.833383502 +0000 UTC m=+446.200119033 I0402 01:15:05.833820 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 01:15:05.833814383 +0000 UTC m=+446.200549944 I0402 01:15:05.834896 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-02 01:15:05.83489201 +0000 UTC m=+446.201627541 I0402 01:15:05.835036 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:15:05.835071 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-02 01:15:05.835068474 +0000 UTC m=+446.201803995 I0402 01:15:05.839692 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 01:15:05.839637059 +0000 UTC m=+446.206372580 I0402 01:15:05.839741 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:15:05.839786 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-02 01:15:05.839775722 +0000 UTC m=+446.206511273 I0402 01:15:05.866080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:05.866287 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-02 01:15:05.866275165 +0000 UTC m=+446.233010726 I0402 01:15:05.870263 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:05.870283 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:05.870325 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-02 01:15:05.870316657 +0000 UTC m=+446.237052188 I0402 01:15:05.870367 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-02 01:15:05.870356818 +0000 UTC m=+446.237092379 I0402 01:15:05.953604 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:05.989750 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-jv8w7" condition "Approved" to 2026-04-02 01:15:05.989737585 +0000 UTC m=+446.356473136 I0402 01:15:06.011827 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-jv8w7" condition "Ready" to 2026-04-02 01:15:06.011816748 +0000 UTC m=+446.378552309 I0402 01:15:06.040352 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:06.047626 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:06.047617574 +0000 UTC m=+446.414353095 I0402 01:15:06.070218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:06.070569 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:06.070563358 +0000 UTC m=+446.437298869 I0402 01:15:06.074967 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-d4l9j" condition "Approved" to 2026-04-02 01:15:06.074959619 +0000 UTC m=+446.441695150 I0402 01:15:06.095231 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-d4l9j" condition "Ready" to 2026-04-02 01:15:06.095219466 +0000 UTC m=+446.461954997 I0402 01:15:06.095428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:06.100532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:06.380205 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:06.380186769 +0000 UTC m=+446.746922330 I0402 01:15:06.428031 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-tthzq" condition "Approved" to 2026-04-02 01:15:06.428014946 +0000 UTC m=+446.794750487 I0402 01:15:06.520827 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:06.521167 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:06.521161517 +0000 UTC m=+446.887897048 I0402 01:15:06.736337 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-tthzq" condition "Ready" to 2026-04-02 01:15:06.736323893 +0000 UTC m=+447.103059404 I0402 01:15:07.041950 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:07.041938343 +0000 UTC m=+447.408673864 I0402 01:15:07.290237 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:07.290616 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:07.325210 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:07.325194353 +0000 UTC m=+447.691929904 I0402 01:15:07.477615 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:07.478006 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:07.477999668 +0000 UTC m=+447.844735199 I0402 01:15:07.736176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:07.774807 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:15.822840 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" condition "Ready" to 2026-04-02 01:15:15.822822785 +0000 UTC m=+456.189558336 I0402 01:15:15.822865 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:15:15.822898 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" condition "Issuing" to 2026-04-02 01:15:15.822889967 +0000 UTC m=+456.189625518 I0402 01:15:15.839768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:15.839932 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" condition "Ready" to 2026-04-02 01:15:15.839920514 +0000 UTC m=+456.206656045 I0402 01:15:15.967133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:15.995367 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bt4c8-5qv76" condition "Approved" to 2026-04-02 01:15:15.995353354 +0000 UTC m=+456.362088885 I0402 01:15:16.019125 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-bt4c8-5qv76" condition "Ready" to 2026-04-02 01:15:16.019114759 +0000 UTC m=+456.385850290 I0402 01:15:16.048328 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:16.04831587 +0000 UTC m=+456.415051401 I0402 01:15:16.078676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-bt4c8-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:57.882060 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-02 01:15:57.882043161 +0000 UTC m=+498.248778712 I0402 01:15:57.882215 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:15:57.882247 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-02 01:15:57.882240716 +0000 UTC m=+498.248976237 I0402 01:15:57.895347 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:57.895585 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:15:57.895681 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-02 01:15:57.895670423 +0000 UTC m=+498.262405974 I0402 01:15:58.126094 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-6fdsf" condition "Approved" to 2026-04-02 01:15:58.12607629 +0000 UTC m=+498.492811831 I0402 01:15:58.140743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-6fdsf" condition "Ready" to 2026-04-02 01:15:58.140732607 +0000 UTC m=+498.507468128 I0402 01:15:58.166263 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:58.166247966 +0000 UTC m=+498.532983527 I0402 01:15:58.182207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:58.182556 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:58.182550433 +0000 UTC m=+498.549285964 I0402 01:15:58.188081 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:58.202934 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:15:58.203275 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:15:58.203265272 +0000 UTC m=+498.570000803 I0402 01:19:15.064705 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:19:15.064754 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-02 01:19:15.064749159 +0000 UTC m=+695.431484680 I0402 01:19:15.064993 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-02 01:19:15.064974265 +0000 UTC m=+695.431709796 I0402 01:19:15.082825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:19:15.082920 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:19:15.082951 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-02 01:19:15.082945044 +0000 UTC m=+695.449680565 I0402 01:19:15.227252 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-8rwwq" condition "Approved" to 2026-04-02 01:19:15.227237032 +0000 UTC m=+695.593972593 I0402 01:19:15.242614 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-8rwwq" condition "Ready" to 2026-04-02 01:19:15.242602385 +0000 UTC m=+695.609337906 I0402 01:19:15.268267 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:19:15.268256287 +0000 UTC m=+695.634991808 I0402 01:19:15.284699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:19:15.285105 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:19:15.285099008 +0000 UTC m=+695.651834539 I0402 01:19:15.308496 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:21:44.376090 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-02 01:21:44.376052269 +0000 UTC m=+844.742787800 I0402 01:21:44.376130 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:21:44.376180 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 01:21:44.376173392 +0000 UTC m=+844.742908923 I0402 01:21:44.394084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:21:44.394365 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:21:44.394509 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-02 01:21:44.39448638 +0000 UTC m=+844.761221911 I0402 01:21:44.694788 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:21:44.702965 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-bdhbj" condition "Approved" to 2026-04-02 01:21:44.702944115 +0000 UTC m=+845.069679646 I0402 01:21:44.724484 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-bdhbj" condition "Ready" to 2026-04-02 01:21:44.724466883 +0000 UTC m=+845.091202404 I0402 01:21:44.751085 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:21:44.751074557 +0000 UTC m=+845.117810078 I0402 01:21:44.769976 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:21:44.770311 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:21:44.770304697 +0000 UTC m=+845.137040228 I0402 01:21:44.793645 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.430277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:23:00.430324 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-02 01:23:00.430321091 +0000 UTC m=+920.797056612 I0402 01:23:00.430313 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-02 01:23:00.43030066 +0000 UTC m=+920.797036221 I0402 01:23:00.458586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.458702 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-02 01:23:00.458690247 +0000 UTC m=+920.825425818 I0402 01:23:00.609218 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.648354 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-j2x79" condition "Approved" to 2026-04-02 01:23:00.648343649 +0000 UTC m=+921.015079180 I0402 01:23:00.666183 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-j2x79" condition "Ready" to 2026-04-02 01:23:00.666172063 +0000 UTC m=+921.032907604 I0402 01:23:00.707231 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:23:00.707221075 +0000 UTC m=+921.073956606 I0402 01:23:00.747181 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.747635 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:23:00.747626571 +0000 UTC m=+921.114362132 I0402 01:23:00.749201 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.776065 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.779175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:23:00.779583 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:23:00.779572787 +0000 UTC m=+921.146308348 I0402 01:26:06.788302 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:26:06.788379 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 01:26:06.788369761 +0000 UTC m=+1107.155105312 I0402 01:26:06.788294 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-02 01:26:06.788243268 +0000 UTC m=+1107.154978829 I0402 01:26:06.807215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:26:06.807313 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0402 01:26:06.807342 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-02 01:26:06.807333211 +0000 UTC m=+1107.174068762 I0402 01:26:06.987169 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:26:06.994280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fcndm" condition "Approved" to 2026-04-02 01:26:06.994260363 +0000 UTC m=+1107.360995924 I0402 01:26:07.009667 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-fcndm" condition "Ready" to 2026-04-02 01:26:07.009655415 +0000 UTC m=+1107.376390946 I0402 01:26:07.036936 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-02 01:26:07.03692439 +0000 UTC m=+1107.403659931 I0402 01:26:07.055602 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0402 01:26:07.101384 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"