I0412 20:53:57.300804 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0412 20:53:57.300917 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0412 20:53:57.301006 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0412 20:53:57.308707 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0412 20:53:57.309292 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0412 20:53:57.309311 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0412 20:53:57.309325 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0412 20:53:57.313685 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0412 20:53:57.329028 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0412 20:53:57.333758 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0412 20:53:57.336705 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0412 20:53:57.343841 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0412 20:53:57.351632 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0412 20:53:57.353359 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0412 20:53:57.353455 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0412 20:53:57.355618 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0412 20:53:57.358379 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0412 20:53:57.360880 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0412 20:53:57.368081 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0412 20:53:57.368140 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0412 20:53:57.368137 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0412 20:53:57.372072 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0412 20:53:57.374642 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0412 20:53:57.377186 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0412 20:53:57.379703 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0412 20:53:57.382084 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0412 20:53:57.382175 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0412 20:53:57.384796 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0412 20:53:57.387128 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0412 20:53:57.390036 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0412 20:53:57.390082 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0412 20:53:57.390236 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0412 20:53:57.397903 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0412 20:53:57.401076 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.401378 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.401503 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.402480 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.421407 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.460592 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.475397 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.484685 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.503114 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:53:57.509396 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0412 20:54:08.350784 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-12 20:54:08.350770687 +0000 UTC m=+11.080188143 I0412 20:54:09.107512 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:54:09.107615 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-12 20:54:09.10760283 +0000 UTC m=+11.837020316 I0412 20:54:09.107661 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-12 20:54:09.107640771 +0000 UTC m=+11.837058277 I0412 20:54:09.124221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:54:09.124367 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-12 20:54:09.124356745 +0000 UTC m=+11.853774201 E0412 20:54:09.125894 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 20:54:09.126638 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-12 20:54:09.126614096 +0000 UTC m=+11.856031552 E0412 20:54:09.126736 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 20:54:09.137604 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0412 20:54:09.137750 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 20:54:09.137811 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 20:54:09.137860 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0412 20:54:09.142867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:54:09.167918 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ck2kc" condition "Approved" to 2026-04-12 20:54:09.167901052 +0000 UTC m=+11.897318508 I0412 20:54:09.185659 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-ck2kc" condition "Ready" to 2026-04-12 20:54:09.185646344 +0000 UTC m=+11.915063800 I0412 20:54:09.207502 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:54:09.207494845 +0000 UTC m=+11.936912301 I0412 20:54:09.228363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:54:14.138397 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:54:14.138383159 +0000 UTC m=+16.867800635 I0412 20:54:35.232699 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:54:35.232745 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-12 20:54:35.232735289 +0000 UTC m=+37.962152745 I0412 20:54:35.232873 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-12 20:54:35.232865841 +0000 UTC m=+37.962283297 I0412 20:54:35.251265 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-12 20:54:35.251248986 +0000 UTC m=+37.980666432 I0412 20:54:35.263131 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:54:35.263278 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:54:35.263316 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-12 20:54:35.263306223 +0000 UTC m=+37.992723659 I0412 20:54:35.394375 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9l2n4" condition "Approved" to 2026-04-12 20:54:35.394359711 +0000 UTC m=+38.123777197 I0412 20:54:35.426022 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-9l2n4" condition "Ready" to 2026-04-12 20:54:35.426003706 +0000 UTC m=+38.155421192 I0412 20:54:35.457143 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:54:35.45712761 +0000 UTC m=+38.186545066 I0412 20:54:35.481877 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:56:16.259119 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:56:16.259167 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-12 20:56:16.259153861 +0000 UTC m=+138.988571337 I0412 20:56:16.259165 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-12 20:56:16.259143951 +0000 UTC m=+138.988561437 E0412 20:56:16.274677 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0412 20:56:16.274751 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-12 20:56:16.274744943 +0000 UTC m=+139.004162399 I0412 20:56:16.274768 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0412 20:56:16.275623 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:56:16.275760 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:56:16.275792 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-12 20:56:16.275782742 +0000 UTC m=+139.005200198 E0412 20:56:16.286266 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0412 20:56:16.286365 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0412 20:56:16.286389 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0412 20:56:16.286421 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0412 20:56:16.289341 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:56:16.289366 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-12 20:56:16.289360825 +0000 UTC m=+139.018778281 I0412 20:56:16.289360 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-12 20:56:16.289343705 +0000 UTC m=+139.018761191 I0412 20:56:16.309302 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:56:16.309393 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:56:16.309420 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-12 20:56:16.30941434 +0000 UTC m=+139.038831786 I0412 20:56:16.440067 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:56:16.453580 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-lt7xj" condition "Approved" to 2026-04-12 20:56:16.453568326 +0000 UTC m=+139.182985782 I0412 20:56:16.486218 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-lt7xj" condition "Ready" to 2026-04-12 20:56:16.486200387 +0000 UTC m=+139.215617863 I0412 20:56:16.517166 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:56:16.517145945 +0000 UTC m=+139.246563421 I0412 20:56:16.537674 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:56:16.538007 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:56:16.538000165 +0000 UTC m=+139.267417621 I0412 20:56:16.553896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:56:16.614445 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-ccmfm" condition "Approved" to 2026-04-12 20:56:16.614430484 +0000 UTC m=+139.343847960 I0412 20:56:16.631746 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-ccmfm" condition "Ready" to 2026-04-12 20:56:16.631734278 +0000 UTC m=+139.361151754 I0412 20:56:21.287110 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:56:21.287095471 +0000 UTC m=+144.016512957 I0412 20:56:21.301461 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-ccmfm" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:56:21.301450489 +0000 UTC m=+144.030867945 I0412 20:56:21.331490 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:56:21.33147715 +0000 UTC m=+144.060894606 I0412 20:56:21.349119 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:58:43.719171 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-134.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:58:43.719247 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-134.nip.io-tls" condition "Issuing" to 2026-04-12 20:58:43.719223772 +0000 UTC m=+286.448641228 I0412 20:58:43.719649 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-134.nip.io-tls" condition "Ready" to 2026-04-12 20:58:43.7196309 +0000 UTC m=+286.449048386 I0412 20:58:43.734751 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-134.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-134.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:58:43.734835 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-134.nip.io-tls" condition "Ready" to 2026-04-12 20:58:43.734824066 +0000 UTC m=+286.464241542 I0412 20:58:43.834648 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-134.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-134.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:58:43.867545 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-134.nip.io-tls-fnkr2" condition "Approved" to 2026-04-12 20:58:43.867525477 +0000 UTC m=+286.596942953 I0412 20:58:43.890979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-134.nip.io-tls-fnkr2" condition "Ready" to 2026-04-12 20:58:43.890964978 +0000 UTC m=+286.620382444 I0412 20:58:43.923293 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-134.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:58:43.923270957 +0000 UTC m=+286.652688443 I0412 20:58:43.946220 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-134.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-134.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:58:43.946654 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-134.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:58:43.946645088 +0000 UTC m=+286.676062544 I0412 20:58:43.964267 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-134.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-134.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:58:43.964666 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-134.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:58:43.964653656 +0000 UTC m=+286.694071142 I0412 20:59:55.640934 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-12 20:59:55.640876588 +0000 UTC m=+358.370294074 I0412 20:59:55.641219 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:59:55.641297 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-12 20:59:55.641287026 +0000 UTC m=+358.370704502 E0412 20:59:55.654857 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 20:59:55.654914 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-12 20:59:55.654908063 +0000 UTC m=+358.384325519 E0412 20:59:55.654935 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0412 20:59:55.657401 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:59:55.657490 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 20:59:55.657519 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-12 20:59:55.657511622 +0000 UTC m=+358.386929108 E0412 20:59:55.665534 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0412 20:59:55.665616 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 20:59:55.665653 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0412 20:59:55.665751 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0412 20:59:55.693237 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-bmsc8" condition "Approved" to 2026-04-12 20:59:55.693210545 +0000 UTC m=+358.422628021 I0412 20:59:55.706037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-bmsc8" condition "Ready" to 2026-04-12 20:59:55.706025817 +0000 UTC m=+358.435443303 I0412 20:59:55.726790 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 20:59:55.726701227 +0000 UTC m=+358.456118683 I0412 20:59:55.746784 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 20:59:55.788813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:00.666077 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:00.666061926 +0000 UTC m=+363.395479402 I0412 21:00:37.443649 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-12 21:00:37.443632711 +0000 UTC m=+400.173050167 I0412 21:00:37.443972 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:00:37.443995 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-12 21:00:37.443991327 +0000 UTC m=+400.173408773 I0412 21:00:37.451752 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:00:37.451787 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-12 21:00:37.451781884 +0000 UTC m=+400.181199330 I0412 21:00:37.451963 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-12 21:00:37.451945357 +0000 UTC m=+400.181362843 I0412 21:00:37.462739 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-12 21:00:37.462702078 +0000 UTC m=+400.192119534 I0412 21:00:37.463148 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:00:37.463171 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-12 21:00:37.463167787 +0000 UTC m=+400.192585243 I0412 21:00:37.482320 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.482492 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-12 21:00:37.482470658 +0000 UTC m=+400.211888114 I0412 21:00:37.488844 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.488959 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-12 21:00:37.48895007 +0000 UTC m=+400.218367526 I0412 21:00:37.489396 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.489458 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:00:37.489486 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-12 21:00:37.489481239 +0000 UTC m=+400.218898695 I0412 21:00:37.651896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.684537 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-vrb5q" condition "Approved" to 2026-04-12 21:00:37.684516009 +0000 UTC m=+400.413933495 I0412 21:00:37.691846 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lhqz7" condition "Approved" to 2026-04-12 21:00:37.691835206 +0000 UTC m=+400.421252662 I0412 21:00:37.712222 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-vrb5q" condition "Ready" to 2026-04-12 21:00:37.712201667 +0000 UTC m=+400.441619153 I0412 21:00:37.714237 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lhqz7" condition "Ready" to 2026-04-12 21:00:37.714204514 +0000 UTC m=+400.443621970 I0412 21:00:37.752710 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:37.752690855 +0000 UTC m=+400.482108341 I0412 21:00:37.753924 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:37.753915218 +0000 UTC m=+400.483332704 I0412 21:00:37.813406 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.814196 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.814855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:37.815095 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:37.815087712 +0000 UTC m=+400.544505168 I0412 21:00:38.040215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:38.040701 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:38.040690345 +0000 UTC m=+400.770107821 I0412 21:00:38.095709 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rk5cw" condition "Approved" to 2026-04-12 21:00:38.095685234 +0000 UTC m=+400.825102690 I0412 21:00:38.498639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rk5cw" condition "Ready" to 2026-04-12 21:00:38.498624686 +0000 UTC m=+401.228042162 I0412 21:00:38.889128 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:38.889111193 +0000 UTC m=+401.618528679 I0412 21:00:38.937625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:39.041950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:39.042807 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:39.042765428 +0000 UTC m=+401.772182914 I0412 21:00:39.290409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:39.340764 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:44.872764 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-877w6-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:00:44.872804 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-877w6-tls" condition "Ready" to 2026-04-12 21:00:44.872187976 +0000 UTC m=+407.601605462 I0412 21:00:44.872822 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-877w6-tls" condition "Issuing" to 2026-04-12 21:00:44.872806847 +0000 UTC m=+407.602224323 I0412 21:00:44.890433 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-877w6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-877w6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:44.890555 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-877w6-tls" condition "Ready" to 2026-04-12 21:00:44.890542009 +0000 UTC m=+407.619959485 I0412 21:00:45.131694 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-877w6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-877w6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:45.164234 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-877w6-chr6m" condition "Approved" to 2026-04-12 21:00:45.16421481 +0000 UTC m=+407.893632266 I0412 21:00:45.184692 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-877w6-chr6m" condition "Ready" to 2026-04-12 21:00:45.184672294 +0000 UTC m=+407.914089750 I0412 21:00:45.210067 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-877w6-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:00:45.210052459 +0000 UTC m=+407.939469915 I0412 21:00:45.229835 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-877w6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-877w6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:00:45.280300 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-877w6-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-877w6-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:01:13.404818 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:01:13.404855 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-12 21:01:13.404846944 +0000 UTC m=+436.134264390 I0412 21:01:13.404816 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-12 21:01:13.404804523 +0000 UTC m=+436.134221969 I0412 21:01:13.419450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:01:13.419549 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:01:13.419585 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-12 21:01:13.41956188 +0000 UTC m=+436.148979336 I0412 21:01:13.636163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:01:13.644365 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-jtc4s" condition "Approved" to 2026-04-12 21:01:13.64435184 +0000 UTC m=+436.373769296 I0412 21:01:13.667731 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-jtc4s" condition "Ready" to 2026-04-12 21:01:13.667717858 +0000 UTC m=+436.397135304 I0412 21:01:13.709812 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:01:13.709795256 +0000 UTC m=+436.439212702 I0412 21:01:13.726320 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:01:13.726618 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:01:13.726610801 +0000 UTC m=+436.456028257 I0412 21:01:13.731948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:01:13.751013 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:04:28.781042 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:04:28.781130 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-12 21:04:28.781121996 +0000 UTC m=+631.510539452 I0412 21:04:28.781300 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-12 21:04:28.781268449 +0000 UTC m=+631.510685935 I0412 21:04:28.802764 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:04:28.802926 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-12 21:04:28.802917512 +0000 UTC m=+631.532334968 I0412 21:04:29.031872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:04:29.064262 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-qqgvb" condition "Approved" to 2026-04-12 21:04:29.064246182 +0000 UTC m=+631.793663638 I0412 21:04:29.085770 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-qqgvb" condition "Ready" to 2026-04-12 21:04:29.085753914 +0000 UTC m=+631.815171370 I0412 21:04:29.114277 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:04:29.114257107 +0000 UTC m=+631.843674563 I0412 21:04:29.135803 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:04:29.136433 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:04:29.13641823 +0000 UTC m=+631.865835716 I0412 21:04:29.155107 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:04:29.155442 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:04:29.155431155 +0000 UTC m=+631.884848611 I0412 21:04:29.155965 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:06:57.113708 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-12 21:06:57.113492393 +0000 UTC m=+779.842909879 I0412 21:06:57.113814 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:06:57.113921 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-12 21:06:57.113910252 +0000 UTC m=+779.843327728 I0412 21:06:57.138313 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:06:57.138425 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:06:57.138458 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-12 21:06:57.138448659 +0000 UTC m=+779.867866115 I0412 21:06:57.366778 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:06:57.375734 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-tw95r" condition "Approved" to 2026-04-12 21:06:57.37571044 +0000 UTC m=+780.105127896 I0412 21:06:57.394541 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-tw95r" condition "Ready" to 2026-04-12 21:06:57.394523902 +0000 UTC m=+780.123941378 I0412 21:06:57.424118 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:06:57.424106314 +0000 UTC m=+780.153523790 I0412 21:06:57.444739 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:06:57.444995 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:06:57.444991164 +0000 UTC m=+780.174408620 I0412 21:06:57.466568 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:08:04.405169 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-12 21:08:04.405154214 +0000 UTC m=+847.134571660 I0412 21:08:04.405519 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:08:04.405561 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-12 21:08:04.405557601 +0000 UTC m=+847.134975057 I0412 21:08:04.423650 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:08:04.423731 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:08:04.423755 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-12 21:08:04.423748651 +0000 UTC m=+847.153166127 I0412 21:08:04.677786 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-4mvhh" condition "Approved" to 2026-04-12 21:08:04.677771816 +0000 UTC m=+847.407189262 I0412 21:08:04.692369 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-4mvhh" condition "Ready" to 2026-04-12 21:08:04.692355938 +0000 UTC m=+847.421773394 I0412 21:08:04.718099 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:08:04.718084099 +0000 UTC m=+847.447501555 I0412 21:08:04.747040 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:08:04.747428 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:08:04.747418997 +0000 UTC m=+847.476836453 I0412 21:08:04.756232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:08:04.760932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:08:04.760991 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:08:04.761176 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:08:04.761167663 +0000 UTC m=+847.490585109 I0412 21:11:11.566973 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:11:11.567055 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-12 21:11:11.567047189 +0000 UTC m=+1034.296464665 I0412 21:11:11.566973 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-12 21:11:11.566944906 +0000 UTC m=+1034.296362392 I0412 21:11:11.591111 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:11:11.591180 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0412 21:11:11.591207 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-12 21:11:11.591199068 +0000 UTC m=+1034.320616524 I0412 21:11:11.828881 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0412 21:11:11.835839 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-l2c47" condition "Approved" to 2026-04-12 21:11:11.835807326 +0000 UTC m=+1034.565224782 I0412 21:11:11.860393 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-l2c47" condition "Ready" to 2026-04-12 21:11:11.860377103 +0000 UTC m=+1034.589794569 I0412 21:11:11.892067 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-12 21:11:11.892043563 +0000 UTC m=+1034.621461059 I0412 21:11:11.915007 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"