I0409 22:30:30.413848 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0409 22:30:30.413996 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0409 22:30:30.414097 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 22:30:30.418031 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0409 22:30:30.418410 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0409 22:30:30.418519 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0409 22:30:30.418638 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0409 22:30:30.421217 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 22:30:30.674573 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0409 22:30:30.674865 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0409 22:30:30.683835 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0409 22:30:30.687207 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0409 22:30:30.690828 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0409 22:30:30.694311 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0409 22:30:30.697674 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0409 22:30:30.697700 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0409 22:30:30.697772 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0409 22:30:30.701673 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0409 22:30:30.707161 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0409 22:30:30.707206 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0409 22:30:30.707240 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0409 22:30:30.707254 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0409 22:30:30.711463 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0409 22:30:30.713660 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0409 22:30:30.715382 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0409 22:30:30.717316 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0409 22:30:30.719173 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0409 22:30:30.721059 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0409 22:30:30.722833 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0409 22:30:30.727163 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0409 22:30:30.729221 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0409 22:30:30.731679 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0409 22:30:30.734155 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0409 22:30:30.735972 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.736232 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.737354 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.738031 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.738426 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.738464 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.739002 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.739182 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.739516 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:30.825913 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 22:30:44.252888 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-09 22:30:44.252859032 +0000 UTC m=+13.871018810 I0409 22:30:44.955892 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 22:30:44.955865746 +0000 UTC m=+14.574025544 I0409 22:30:44.956000 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:44.956088 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 22:30:44.95607798 +0000 UTC m=+14.574237738 E0409 22:30:44.971923 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:30:44.972112 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-09 22:30:44.972100531 +0000 UTC m=+14.590260289 E0409 22:30:44.972177 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:30:44.974510 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:44.974614 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:30:44.974647 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 22:30:44.97463663 +0000 UTC m=+14.592796418 E0409 22:30:44.982997 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0409 22:30:44.983133 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:30:44.983180 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:30:44.983225 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0409 22:30:45.029281 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6vznk" condition "Approved" to 2026-04-09 22:30:45.029264836 +0000 UTC m=+14.647424594 I0409 22:30:45.041870 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-6vznk" condition "Ready" to 2026-04-09 22:30:45.04185637 +0000 UTC m=+14.660016128 I0409 22:30:45.069916 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:45.069893602 +0000 UTC m=+14.688053360 I0409 22:30:45.087464 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:45.087691 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:45.087684735 +0000 UTC m=+14.705844493 I0409 22:30:45.100051 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:45.101304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:30:45.101588 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:45.101578104 +0000 UTC m=+14.719737852 I0409 22:30:49.983902 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:30:49.983885948 +0000 UTC m=+19.602045726 I0409 22:31:19.393139 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 22:31:19.393124793 +0000 UTC m=+49.011284551 I0409 22:31:19.393224 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:31:19.393267 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 22:31:19.393259145 +0000 UTC m=+49.011418903 I0409 22:31:19.402063 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-09 22:31:19.402047085 +0000 UTC m=+49.020206843 I0409 22:31:19.415311 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:31:19.415384 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 22:31:19.415376453 +0000 UTC m=+49.033536211 I0409 22:31:19.640492 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:31:19.869903 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lx7nz" condition "Approved" to 2026-04-09 22:31:19.869889562 +0000 UTC m=+49.488049320 I0409 22:31:19.899227 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lx7nz" condition "Ready" to 2026-04-09 22:31:19.899213399 +0000 UTC m=+49.517373187 E0409 22:31:19.899312 1 selfsigned.go:127] "Referenced secret openstack/rabbitmq-messaging-topology-operator-webhook-4vkvl not found" err="secret \"rabbitmq-messaging-topology-operator-webhook-4vkvl\" not found" logger="cert-manager.certificaterequests-issuer-selfsigned.sign" resource_name="rabbitmq-messaging-topology-operator-webhook-lx7nz" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" E0409 22:31:19.915118 1 selfsigned.go:127] "Referenced secret openstack/rabbitmq-messaging-topology-operator-webhook-4vkvl not found" err="secret \"rabbitmq-messaging-topology-operator-webhook-4vkvl\" not found" logger="cert-manager.certificaterequests-issuer-selfsigned.sign" resource_name="rabbitmq-messaging-topology-operator-webhook-lx7nz" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" I0409 22:31:20.063215 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" resource_name="rabbitmq-messaging-topology-operator-webhook" resource_namespace="openstack" resource_kind="Certificate" resource_version="v1" resource_name="rabbitmq-messaging-topology-operator-webhook-lx7nz" resource_namespace="openstack" resource_kind="CertificateRequest" resource_version="v1" resource_name="rabbitmq-messaging-topology-operator-webhook-4vkvl" resource_namespace="openstack" resource_kind="Secret" resource_version="v1" I0409 22:31:20.085250 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-p5v2r" condition "Approved" to 2026-04-09 22:31:20.084985582 +0000 UTC m=+49.703145340 I0409 22:31:20.101402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-p5v2r" condition "Ready" to 2026-04-09 22:31:20.101393479 +0000 UTC m=+49.719553227 I0409 22:31:20.361769 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:31:20.361745735 +0000 UTC m=+49.979905533 I0409 22:31:20.432155 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:31:20.432771 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:31:20.432759328 +0000 UTC m=+50.050919116 I0409 22:31:20.502597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.282025 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-09 22:33:09.281981805 +0000 UTC m=+158.900141603 I0409 22:33:09.282782 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:33:09.282825 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-09 22:33:09.28281554 +0000 UTC m=+158.900975318 E0409 22:33:09.295382 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 22:33:09.295431 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-09 22:33:09.295423678 +0000 UTC m=+158.913583446 I0409 22:33:09.295486 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 22:33:09.298914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.298962 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:33:09.298977 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-09 22:33:09.298971085 +0000 UTC m=+158.917130843 E0409 22:33:09.306383 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0409 22:33:09.306454 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 22:33:09.306473 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 22:33:09.306509 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0409 22:33:09.313382 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-09 22:33:09.313373897 +0000 UTC m=+158.931533645 I0409 22:33:09.313575 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:33:09.313643 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 22:33:09.313633961 +0000 UTC m=+158.931793729 I0409 22:33:09.330376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.330441 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:33:09.330459 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 22:33:09.330453049 +0000 UTC m=+158.948612787 I0409 22:33:09.459323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.467051 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-vtckr" condition "Approved" to 2026-04-09 22:33:09.467036726 +0000 UTC m=+159.085196514 I0409 22:33:09.482857 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-vtckr" condition "Ready" to 2026-04-09 22:33:09.482843804 +0000 UTC m=+159.101003582 I0409 22:33:09.524014 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.532373 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-pwmcq" condition "Approved" to 2026-04-09 22:33:09.532355598 +0000 UTC m=+159.150515376 I0409 22:33:09.580466 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-pwmcq" condition "Ready" to 2026-04-09 22:33:09.580449426 +0000 UTC m=+159.198609214 I0409 22:33:09.608530 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:09.608518166 +0000 UTC m=+159.226677924 I0409 22:33:09.626259 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.626621 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:09.626612677 +0000 UTC m=+159.244772455 I0409 22:33:09.633934 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:09.642709 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:14.307651 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:14.307627665 +0000 UTC m=+163.925787443 I0409 22:33:14.326453 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-vtckr" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:14.326438289 +0000 UTC m=+163.944598067 I0409 22:33:14.356052 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:33:14.356042408 +0000 UTC m=+163.974202166 I0409 22:33:14.380085 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:33:14.430496 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:35:47.115375 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-227.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:35:47.115795 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-227.nip.io-tls" condition "Issuing" to 2026-04-09 22:35:47.115791401 +0000 UTC m=+316.733951159 I0409 22:35:47.115735 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-227.nip.io-tls" condition "Ready" to 2026-04-09 22:35:47.11571088 +0000 UTC m=+316.733870638 I0409 22:35:47.139285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-227.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-227.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:35:47.139375 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-227.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:35:47.139397 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-227.nip.io-tls" condition "Issuing" to 2026-04-09 22:35:47.139389403 +0000 UTC m=+316.757549191 I0409 22:35:47.259416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-227.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-227.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:35:47.267764 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-227.nip.io-tls-nk9mr" condition "Approved" to 2026-04-09 22:35:47.267746062 +0000 UTC m=+316.885905830 I0409 22:35:47.285016 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-227.nip.io-tls-nk9mr" condition "Ready" to 2026-04-09 22:35:47.285003672 +0000 UTC m=+316.903163410 I0409 22:35:47.311162 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-227.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:35:47.311151223 +0000 UTC m=+316.929310981 I0409 22:35:47.325678 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-227.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-227.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:35:47.325922 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-227.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:35:47.325915226 +0000 UTC m=+316.944074984 I0409 22:35:47.346696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-227.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-227.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:36:58.284680 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:36:58.284734 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 22:36:58.284694962 +0000 UTC m=+387.902854750 I0409 22:36:58.284842 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 22:36:58.284799633 +0000 UTC m=+387.902959411 E0409 22:36:58.299455 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:36:58.299502 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-09 22:36:58.299493815 +0000 UTC m=+387.917653573 E0409 22:36:58.299713 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 22:36:58.300210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:36:58.300784 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 22:36:58.300775749 +0000 UTC m=+387.918935547 E0409 22:36:58.318068 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0409 22:36:58.318796 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:36:58.318846 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 22:36:58.318894 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0409 22:36:58.321780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:36:58.321921 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 22:36:58.321910362 +0000 UTC m=+387.940070140 I0409 22:36:58.343681 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gq2bp" condition "Approved" to 2026-04-09 22:36:58.343660837 +0000 UTC m=+387.961820615 I0409 22:36:58.356311 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-gq2bp" condition "Ready" to 2026-04-09 22:36:58.356303109 +0000 UTC m=+387.974462867 I0409 22:36:58.378784 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:36:58.378774659 +0000 UTC m=+387.996934417 I0409 22:36:58.398885 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:36:58.399255 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:36:58.399240289 +0000 UTC m=+388.017400047 I0409 22:36:58.415067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:36:58.415445 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:36:58.415431288 +0000 UTC m=+388.033591066 I0409 22:37:03.319097 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:03.319082479 +0000 UTC m=+392.937242257 I0409 22:37:41.985453 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:37:41.985542 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 22:37:41.985532862 +0000 UTC m=+431.603692620 I0409 22:37:41.985815 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 22:37:41.985803176 +0000 UTC m=+431.603962924 I0409 22:37:41.985841 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 22:37:41.985839297 +0000 UTC m=+431.603999045 I0409 22:37:41.986056 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:37:41.987430 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 22:37:41.987423748 +0000 UTC m=+431.605583496 I0409 22:37:41.993357 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 22:37:41.993344231 +0000 UTC m=+431.611503989 I0409 22:37:41.993684 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:37:41.993706 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 22:37:41.993702068 +0000 UTC m=+431.611861816 I0409 22:37:42.028137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.028202 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 22:37:42.028196957 +0000 UTC m=+431.646356705 I0409 22:37:42.058899 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.058997 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 22:37:42.058991144 +0000 UTC m=+431.677150893 I0409 22:37:42.059112 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.059203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:37:42.059235 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 22:37:42.059230599 +0000 UTC m=+431.677390347 I0409 22:37:42.163527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.201581 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-kwdvs" condition "Approved" to 2026-04-09 22:37:42.201562847 +0000 UTC m=+431.819722625 I0409 22:37:42.228227 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-kwdvs" condition "Ready" to 2026-04-09 22:37:42.228215256 +0000 UTC m=+431.846375034 I0409 22:37:42.240535 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-m5qqw" condition "Approved" to 2026-04-09 22:37:42.24051862 +0000 UTC m=+431.858678408 I0409 22:37:42.262504 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-m5qqw" condition "Ready" to 2026-04-09 22:37:42.26249277 +0000 UTC m=+431.880652528 I0409 22:37:42.264085 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:42.26406733 +0000 UTC m=+431.882227108 I0409 22:37:42.284229 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.290907 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:42.290887692 +0000 UTC m=+431.909047470 I0409 22:37:42.315821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.316153 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:42.316146914 +0000 UTC m=+431.934306682 I0409 22:37:42.573097 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.682256 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.822969 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:42.971166 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-bk7fb" condition "Approved" to 2026-04-09 22:37:42.971151531 +0000 UTC m=+432.589311279 I0409 22:37:43.034171 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-bk7fb" condition "Ready" to 2026-04-09 22:37:43.034151374 +0000 UTC m=+432.652311172 I0409 22:37:43.475901 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:43.47587939 +0000 UTC m=+433.094039178 I0409 22:37:43.574297 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:43.574661 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:43.574652685 +0000 UTC m=+433.192812443 I0409 22:37:43.785981 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:50.379412 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" condition "Ready" to 2026-04-09 22:37:50.379393667 +0000 UTC m=+439.997553445 I0409 22:37:50.379510 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:37:50.379564 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" condition "Issuing" to 2026-04-09 22:37:50.37955209 +0000 UTC m=+439.997711868 I0409 22:37:50.400372 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:50.400827 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:37:50.400887 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" condition "Issuing" to 2026-04-09 22:37:50.400866878 +0000 UTC m=+440.019026666 I0409 22:37:50.755556 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:50.763972 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mbbh5-n7v5n" condition "Approved" to 2026-04-09 22:37:50.76395642 +0000 UTC m=+440.382116168 I0409 22:37:50.784114 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mbbh5-n7v5n" condition "Ready" to 2026-04-09 22:37:50.784101125 +0000 UTC m=+440.402260903 I0409 22:37:50.818443 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:50.818428411 +0000 UTC m=+440.436588159 I0409 22:37:50.842031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:37:50.842357 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:37:50.842348517 +0000 UTC m=+440.460508285 I0409 22:37:50.868034 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mbbh5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:38:14.647367 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 22:38:14.647341811 +0000 UTC m=+464.265501569 I0409 22:38:14.647569 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:38:14.647631 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 22:38:14.647620857 +0000 UTC m=+464.265780615 I0409 22:38:14.662066 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:38:14.662115 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 22:38:14.662110383 +0000 UTC m=+464.280270141 I0409 22:38:14.874273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:38:14.905908 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ngvs2" condition "Approved" to 2026-04-09 22:38:14.905894287 +0000 UTC m=+464.524054045 I0409 22:38:14.922943 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ngvs2" condition "Ready" to 2026-04-09 22:38:14.922931012 +0000 UTC m=+464.541090770 I0409 22:38:14.952002 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:38:14.951986696 +0000 UTC m=+464.570146454 I0409 22:38:14.981116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:38:15.019880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:41:43.817881 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:41:43.817870 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 22:41:43.817828588 +0000 UTC m=+673.435988366 I0409 22:41:43.817944 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 22:41:43.81793815 +0000 UTC m=+673.436097898 I0409 22:41:43.841250 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:41:43.841497 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 22:41:43.841486646 +0000 UTC m=+673.459646434 I0409 22:41:44.082678 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:41:44.110303 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xkjsq" condition "Approved" to 2026-04-09 22:41:44.110289102 +0000 UTC m=+673.728448870 I0409 22:41:44.129004 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-xkjsq" condition "Ready" to 2026-04-09 22:41:44.128992075 +0000 UTC m=+673.747151833 I0409 22:41:44.157691 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:41:44.157677618 +0000 UTC m=+673.775837376 I0409 22:41:44.190053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:41:44.190418 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:41:44.190412567 +0000 UTC m=+673.808572325 I0409 22:41:44.208194 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:41:44.208636 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:41:44.208627282 +0000 UTC m=+673.826787040 I0409 22:41:44.210019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:44:09.666655 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:44:09.666770 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-09 22:44:09.666738394 +0000 UTC m=+819.284898182 I0409 22:44:09.666772 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 22:44:09.666725754 +0000 UTC m=+819.284885572 I0409 22:44:09.682404 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:44:09.682482 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 22:44:09.682476311 +0000 UTC m=+819.300636069 I0409 22:44:09.892606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:44:09.919530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-px8jn" condition "Approved" to 2026-04-09 22:44:09.919509217 +0000 UTC m=+819.537669005 I0409 22:44:09.936520 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-px8jn" condition "Ready" to 2026-04-09 22:44:09.936509328 +0000 UTC m=+819.554669086 I0409 22:44:09.967576 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:44:09.967563574 +0000 UTC m=+819.585723332 I0409 22:44:09.982656 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:44:09.983087 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:44:09.983076847 +0000 UTC m=+819.601236615 I0409 22:44:10.004196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:45:19.347236 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:45:19.347309 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 22:45:19.347303668 +0000 UTC m=+888.965463426 I0409 22:45:19.347261 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-09 22:45:19.347211237 +0000 UTC m=+888.965370995 I0409 22:45:19.362635 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:45:19.362717 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:45:19.362740 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 22:45:19.362732231 +0000 UTC m=+888.980891989 I0409 22:45:19.632805 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6l4q2" condition "Approved" to 2026-04-09 22:45:19.632792717 +0000 UTC m=+889.250952465 I0409 22:45:19.649711 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-6l4q2" condition "Ready" to 2026-04-09 22:45:19.649697587 +0000 UTC m=+889.267857345 I0409 22:45:19.675803 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:45:19.675790382 +0000 UTC m=+889.293950140 I0409 22:45:19.710537 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:45:19.710832 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:45:19.710826475 +0000 UTC m=+889.328986223 I0409 22:45:19.748168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:48:23.131670 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-09 22:48:23.131635039 +0000 UTC m=+1072.749794797 I0409 22:48:23.131817 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 22:48:23.131884 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 22:48:23.131876463 +0000 UTC m=+1072.750036251 I0409 22:48:23.158761 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:48:23.158889 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-09 22:48:23.158878106 +0000 UTC m=+1072.777037894 I0409 22:48:23.221166 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:48:23.248155 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-xc8m9" condition "Approved" to 2026-04-09 22:48:23.24814254 +0000 UTC m=+1072.866302298 I0409 22:48:23.263684 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-xc8m9" condition "Ready" to 2026-04-09 22:48:23.263673575 +0000 UTC m=+1072.881833323 I0409 22:48:23.293689 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:48:23.293674846 +0000 UTC m=+1072.911834604 I0409 22:48:23.313462 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:48:23.313936 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 22:48:23.31392433 +0000 UTC m=+1072.932084108 I0409 22:48:23.331517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 22:48:23.339358 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"