I0602 06:49:59.854060 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0602 06:49:59.854259 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0602 06:49:59.854372 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0602 06:49:59.858693 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0602 06:49:59.859274 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0602 06:49:59.859335 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0602 06:49:59.859433 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0602 06:49:59.861806 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0602 06:49:59.875829 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0602 06:49:59.876140 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0602 06:49:59.882768 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0602 06:49:59.889616 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0602 06:49:59.891832 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0602 06:49:59.893595 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0602 06:49:59.895499 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0602 06:49:59.897224 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0602 06:49:59.899214 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0602 06:49:59.903477 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0602 06:49:59.908748 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0602 06:49:59.908859 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0602 06:49:59.913824 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0602 06:49:59.916433 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0602 06:49:59.919106 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0602 06:49:59.921544 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0602 06:49:59.921582 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0602 06:49:59.921624 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0602 06:49:59.923819 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0602 06:49:59.925534 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0602 06:49:59.925679 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0602 06:49:59.927958 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0602 06:49:59.932653 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0602 06:49:59.936002 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0602 06:49:59.936413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0602 06:49:59.939255 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:49:59.951552 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:49:59.951882 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:49:59.952111 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:49:59.984973 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:50:00.005151 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:50:00.012660 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:50:00.030594 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:50:00.047332 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:50:00.090610 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0602 06:50:15.324393 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-06-02 06:50:15.32367213 +0000 UTC m=+15.501723808 I0602 06:50:16.029672 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:50:16.029700 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-06-02 06:50:16.029694247 +0000 UTC m=+16.207745905 I0602 06:50:16.029930 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-06-02 06:50:16.029757329 +0000 UTC m=+16.207809007 E0602 06:50:16.047590 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0602 06:50:16.047659 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-06-02 06:50:16.047651542 +0000 UTC m=+16.225703190 E0602 06:50:16.047683 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0602 06:50:16.049701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:16.049776 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-06-02 06:50:16.049769426 +0000 UTC m=+16.227821084 E0602 06:50:16.058430 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0602 06:50:16.058538 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0602 06:50:16.058605 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0602 06:50:16.058649 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0602 06:50:16.068979 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:16.093068 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-w5vnv" condition "Approved" to 2026-06-02 06:50:16.093056874 +0000 UTC m=+16.271108532 I0602 06:50:16.108935 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-w5vnv" condition "Ready" to 2026-06-02 06:50:16.108920527 +0000 UTC m=+16.286972215 I0602 06:50:16.133367 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:50:16.133350486 +0000 UTC m=+16.311402174 I0602 06:50:16.152800 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:16.153351 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:50:16.153342253 +0000 UTC m=+16.331393911 I0602 06:50:16.168677 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:16.169052 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:50:16.169041301 +0000 UTC m=+16.347092959 I0602 06:50:21.059071 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:50:21.059061699 +0000 UTC m=+21.237113357 I0602 06:50:43.065584 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:50:43.065592 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-06-02 06:50:43.065527629 +0000 UTC m=+43.243579287 I0602 06:50:43.065629 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-02 06:50:43.065621161 +0000 UTC m=+43.243672809 I0602 06:50:43.082200 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-06-02 06:50:43.08218774 +0000 UTC m=+43.260239398 I0602 06:50:43.111992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:43.114789 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:50:43.114822 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-06-02 06:50:43.1148159 +0000 UTC m=+43.292867548 I0602 06:50:43.418839 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:43.430884 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tzb46" condition "Approved" to 2026-06-02 06:50:43.430873226 +0000 UTC m=+43.608924884 I0602 06:50:43.458667 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-tzb46" condition "Ready" to 2026-06-02 06:50:43.458648039 +0000 UTC m=+43.636699707 I0602 06:50:43.500391 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:50:43.50037831 +0000 UTC m=+43.678429958 I0602 06:50:43.519092 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:50:43.653750 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:54:48.881962 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready" to 2026-06-02 06:54:48.881933926 +0000 UTC m=+289.059985584 I0602 06:54:48.882315 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-70.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:54:48.882339 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Issuing" to 2026-06-02 06:54:48.882334699 +0000 UTC m=+289.060386357 I0602 06:54:48.899517 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:54:48.899597 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-70.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:54:48.899623 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Issuing" to 2026-06-02 06:54:48.899618118 +0000 UTC m=+289.077669766 I0602 06:54:49.087663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:54:49.107036 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-70.nip.io-tls-z6nhg" condition "Approved" to 2026-06-02 06:54:49.107026243 +0000 UTC m=+289.285077891 I0602 06:54:49.153154 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-70.nip.io-tls-z6nhg" condition "Ready" to 2026-06-02 06:54:49.153143324 +0000 UTC m=+289.331194982 I0602 06:54:49.180665 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:54:49.18065047 +0000 UTC m=+289.358702158 I0602 06:54:49.196532 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:54:49.196832 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-70.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:54:49.196826247 +0000 UTC m=+289.374877905 I0602 06:54:49.217112 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-70.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-70.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:55:54.571520 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:55:54.571581 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-02 06:55:54.571567974 +0000 UTC m=+354.749619612 I0602 06:55:54.571516 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-06-02 06:55:54.571472452 +0000 UTC m=+354.749524140 E0602 06:55:54.583190 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0602 06:55:54.583272 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-06-02 06:55:54.583258783 +0000 UTC m=+354.761310451 E0602 06:55:54.583342 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0602 06:55:54.587801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:55:54.587994 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:55:54.588041 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-06-02 06:55:54.588027818 +0000 UTC m=+354.766079496 E0602 06:55:54.597139 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0602 06:55:54.597406 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0602 06:55:54.597446 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0602 06:55:54.597486 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0602 06:55:54.630298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:55:54.630929 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8nbpn" condition "Approved" to 2026-06-02 06:55:54.630912495 +0000 UTC m=+354.808964153 I0602 06:55:54.642920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-8nbpn" condition "Ready" to 2026-06-02 06:55:54.64290346 +0000 UTC m=+354.820955118 I0602 06:55:54.665177 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:55:54.665166671 +0000 UTC m=+354.843218329 I0602 06:55:54.685127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:55:54.730823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:55:59.598247 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:55:59.59823221 +0000 UTC m=+359.776283888 I0602 06:56:40.179357 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:56:40.179437 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-02 06:56:40.179429624 +0000 UTC m=+400.357481272 I0602 06:56:40.179666 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-06-02 06:56:40.179661099 +0000 UTC m=+400.357712747 I0602 06:56:40.193264 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:56:40.193362 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-06-02 06:56:40.193353963 +0000 UTC m=+400.371405621 I0602 06:56:40.193728 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-02 06:56:40.19372271 +0000 UTC m=+400.371774358 I0602 06:56:40.217373 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-06-02 06:56:40.217357186 +0000 UTC m=+400.395408834 I0602 06:56:40.217455 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:56:40.217619 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-06-02 06:56:40.217614661 +0000 UTC m=+400.395666309 I0602 06:56:40.278299 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:40.278355 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:56:40.278306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:40.278507 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-06-02 06:56:40.278422123 +0000 UTC m=+400.456473771 I0602 06:56:40.278375 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-06-02 06:56:40.278370092 +0000 UTC m=+400.456421730 I0602 06:56:40.278879 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:40.279180 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:56:40.279203 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-06-02 06:56:40.279196888 +0000 UTC m=+400.457248526 I0602 06:56:40.520254 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:40.541330 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:40.589472 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:40.628280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-h2hcg" condition "Approved" to 2026-06-02 06:56:40.628267918 +0000 UTC m=+400.806319566 I0602 06:56:40.635857 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7wrgj" condition "Approved" to 2026-06-02 06:56:40.635851674 +0000 UTC m=+400.813903322 I0602 06:56:40.663050 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-7wrgj" condition "Ready" to 2026-06-02 06:56:40.663039719 +0000 UTC m=+400.841091377 I0602 06:56:40.663115 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-h2hcg" condition "Ready" to 2026-06-02 06:56:40.6630904 +0000 UTC m=+400.841142058 I0602 06:56:40.663276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-smh99" condition "Approved" to 2026-06-02 06:56:40.663265483 +0000 UTC m=+400.841317141 I0602 06:56:40.686713 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-smh99" condition "Ready" to 2026-06-02 06:56:40.686704054 +0000 UTC m=+400.864755702 I0602 06:56:40.828669 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:56:40.828656592 +0000 UTC m=+401.006708270 I0602 06:56:40.875303 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:56:40.87528492 +0000 UTC m=+401.053336598 I0602 06:56:40.919560 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:56:40.919546343 +0000 UTC m=+401.097597991 I0602 06:56:41.070821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:41.071375 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:56:41.071365667 +0000 UTC m=+401.249417345 I0602 06:56:41.171959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:41.172440 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:56:41.172434421 +0000 UTC m=+401.350486079 I0602 06:56:41.268148 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:41.629970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:41.718111 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:48.382120 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" condition "Ready" to 2026-06-02 06:56:48.382096305 +0000 UTC m=+408.560147963 I0602 06:56:48.382551 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:56:48.383206 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" condition "Issuing" to 2026-06-02 06:56:48.382598575 +0000 UTC m=+408.560650243 I0602 06:56:48.396911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:48.397017 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" condition "Ready" to 2026-06-02 06:56:48.397005416 +0000 UTC m=+408.575057104 I0602 06:56:48.509956 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:56:48.562781 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-tg8q4-dxdmf" condition "Approved" to 2026-06-02 06:56:48.562766259 +0000 UTC m=+408.740817907 I0602 06:56:48.583639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-tg8q4-dxdmf" condition "Ready" to 2026-06-02 06:56:48.583624942 +0000 UTC m=+408.761676590 I0602 06:56:48.610863 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:56:48.610850046 +0000 UTC m=+408.788901704 I0602 06:56:48.635281 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-tg8q4-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:57:00.627378 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:57:00.627419 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-02 06:57:00.627410291 +0000 UTC m=+420.805461949 I0602 06:57:00.628620 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-06-02 06:57:00.628612563 +0000 UTC m=+420.806664221 I0602 06:57:00.644386 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:57:00.644495 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 06:57:00.644521 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-06-02 06:57:00.644513335 +0000 UTC m=+420.822565003 I0602 06:57:00.798429 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 06:57:00.819381 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2g9sk" condition "Approved" to 2026-06-02 06:57:00.819370793 +0000 UTC m=+420.997422451 I0602 06:57:00.838980 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-2g9sk" condition "Ready" to 2026-06-02 06:57:00.838969663 +0000 UTC m=+421.017021311 I0602 06:57:00.881168 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 06:57:00.881151466 +0000 UTC m=+421.059203134 I0602 06:57:00.910345 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:00:15.837616 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 07:00:15.837644 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-02 07:00:15.837638182 +0000 UTC m=+616.015689820 I0602 07:00:15.838011 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-06-02 07:00:15.838006767 +0000 UTC m=+616.016058415 I0602 07:00:15.851227 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:00:15.851277 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 07:00:15.851291 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-06-02 07:00:15.851285673 +0000 UTC m=+616.029337331 I0602 07:00:15.965300 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:00:15.972305 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-v8m2t" condition "Approved" to 2026-06-02 07:00:15.972291952 +0000 UTC m=+616.150343610 I0602 07:00:15.992394 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-v8m2t" condition "Ready" to 2026-06-02 07:00:15.992378054 +0000 UTC m=+616.170429712 I0602 07:00:16.022500 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 07:00:16.022486386 +0000 UTC m=+616.200538044 I0602 07:00:16.041914 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:01:30.324092 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-06-02 07:01:30.324079002 +0000 UTC m=+690.502130660 I0602 07:01:30.324603 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 07:01:30.324658 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-06-02 07:01:30.32464997 +0000 UTC m=+690.502701638 I0602 07:01:30.339428 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:01:30.339550 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0602 07:01:30.339595 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-06-02 07:01:30.339588422 +0000 UTC m=+690.517640080 I0602 07:01:30.544593 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-hhb88" condition "Approved" to 2026-06-02 07:01:30.54458069 +0000 UTC m=+690.722632348 I0602 07:01:30.579190 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-hhb88" condition "Ready" to 2026-06-02 07:01:30.579179427 +0000 UTC m=+690.757231085 I0602 07:01:30.610319 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 07:01:30.610310417 +0000 UTC m=+690.788362065 I0602 07:01:30.638805 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:01:30.639053 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 07:01:30.639048036 +0000 UTC m=+690.817099684 I0602 07:01:30.655756 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0602 07:01:30.656041 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-06-02 07:01:30.656033755 +0000 UTC m=+690.834085414