I0404 10:18:57.236777 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0404 10:18:57.236949 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0404 10:18:57.237085 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0404 10:18:57.244844 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0404 10:18:57.245322 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0404 10:18:57.245453 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0404 10:18:57.245461 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0404 10:18:57.248159 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0404 10:18:57.262563 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0404 10:18:57.267919 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0404 10:18:57.270881 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0404 10:18:57.275298 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0404 10:18:57.278884 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0404 10:18:57.281545 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0404 10:18:57.284322 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0404 10:18:57.286207 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0404 10:18:57.287876 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0404 10:18:57.287985 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0404 10:18:57.289735 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0404 10:18:57.295507 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0404 10:18:57.298452 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0404 10:18:57.301058 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0404 10:18:57.303818 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0404 10:18:57.305623 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0404 10:18:57.305650 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0404 10:18:57.305655 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0404 10:18:57.307589 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0404 10:18:57.311620 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0404 10:18:57.311657 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0404 10:18:57.311670 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0404 10:18:57.311718 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0404 10:18:57.314724 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0404 10:18:57.318884 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0404 10:18:57.321235 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.322625 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.324479 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.337178 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.362027 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.376017 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.413924 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.423803 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.445728 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:18:57.465936 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0404 10:19:17.107815 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-04 10:19:17.107799263 +0000 UTC m=+19.903324243 I0404 10:19:17.875709 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:19:17.875772 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-04 10:19:17.875759791 +0000 UTC m=+20.671284761 I0404 10:19:17.876960 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-04 10:19:17.876951511 +0000 UTC m=+20.672476481 E0404 10:19:17.892690 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:19:17.892867 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-04 10:19:17.892851947 +0000 UTC m=+20.688376927 E0404 10:19:17.892944 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:19:17.895813 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.895962 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:19:17.896027 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-04 10:19:17.896001178 +0000 UTC m=+20.691526128 E0404 10:19:17.904943 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0404 10:19:17.905422 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:19:17.905564 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:19:17.905746 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0404 10:19:17.943853 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-d7zb9" condition "Approved" to 2026-04-04 10:19:17.94383727 +0000 UTC m=+20.739362220 I0404 10:19:17.945527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:17.961390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-d7zb9" condition "Ready" to 2026-04-04 10:19:17.961376289 +0000 UTC m=+20.756901269 I0404 10:19:17.982823 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:17.982805266 +0000 UTC m=+20.778330246 I0404 10:19:18.000304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:18.000559 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:18.00055175 +0000 UTC m=+20.796076710 I0404 10:19:18.007430 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:18.016618 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:22.906164 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:22.906151946 +0000 UTC m=+25.701676926 I0404 10:19:48.506643 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-04 10:19:48.506592645 +0000 UTC m=+51.302117625 I0404 10:19:48.506910 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:19:48.507180 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-04 10:19:48.507168709 +0000 UTC m=+51.302693659 I0404 10:19:48.518445 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-04 10:19:48.518434436 +0000 UTC m=+51.313959376 I0404 10:19:48.540564 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:48.540633 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:19:48.540663 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-04 10:19:48.540656731 +0000 UTC m=+51.336181671 I0404 10:19:48.918628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:48.929530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-qwbkv" condition "Approved" to 2026-04-04 10:19:48.929515551 +0000 UTC m=+51.725040501 I0404 10:19:48.963536 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-qwbkv" condition "Ready" to 2026-04-04 10:19:48.963518875 +0000 UTC m=+51.759043855 I0404 10:19:48.997318 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:48.997306973 +0000 UTC m=+51.792831913 I0404 10:19:49.025357 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:49.025880 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:49.02586978 +0000 UTC m=+51.821394730 I0404 10:19:49.044514 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:19:49.045106 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:19:49.045090877 +0000 UTC m=+51.840615847 I0404 10:22:20.922563 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:22:20.922629 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-04 10:22:20.922621856 +0000 UTC m=+203.718146796 I0404 10:22:20.923041 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-04 10:22:20.923036556 +0000 UTC m=+203.718561496 E0404 10:22:20.939398 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0404 10:22:20.939480 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-04 10:22:20.939474485 +0000 UTC m=+203.734999415 I0404 10:22:20.939496 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0404 10:22:20.940626 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:20.940715 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:22:20.940748 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-04 10:22:20.940740387 +0000 UTC m=+203.736265357 E0404 10:22:20.950614 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0404 10:22:20.950746 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0404 10:22:20.950781 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0404 10:22:20.950823 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0404 10:22:20.957950 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-04 10:22:20.957932225 +0000 UTC m=+203.753457175 I0404 10:22:20.958021 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:22:20.958042 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-04 10:22:20.958038728 +0000 UTC m=+203.753563668 I0404 10:22:20.973128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:20.973187 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:22:20.973208 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-04 10:22:20.973200475 +0000 UTC m=+203.768725415 I0404 10:22:21.147240 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-trbq5" condition "Approved" to 2026-04-04 10:22:21.147222268 +0000 UTC m=+203.942747238 I0404 10:22:21.166092 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-trbq5" condition "Ready" to 2026-04-04 10:22:21.166075759 +0000 UTC m=+203.961600739 I0404 10:22:21.500859 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:21.509896 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zd6c8" condition "Approved" to 2026-04-04 10:22:21.509881038 +0000 UTC m=+204.305405988 I0404 10:22:21.537554 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zd6c8" condition "Ready" to 2026-04-04 10:22:21.537538503 +0000 UTC m=+204.333063483 I0404 10:22:21.568207 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:21.568195924 +0000 UTC m=+204.363720884 I0404 10:22:21.585300 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:21.585592 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:21.585585907 +0000 UTC m=+204.381110857 I0404 10:22:21.604527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:25.951939 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:25.951929083 +0000 UTC m=+208.747454023 I0404 10:22:25.967552 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-trbq5" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:25.967541632 +0000 UTC m=+208.763066582 I0404 10:22:25.999739 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:25.999723931 +0000 UTC m=+208.795248911 I0404 10:22:26.022187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:26.022532 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:26.022523432 +0000 UTC m=+208.818048392 I0404 10:22:26.026244 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:26.039957 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:22:26.040651 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:22:26.040634374 +0000 UTC m=+208.836159354 I0404 10:25:33.178350 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready" to 2026-04-04 10:25:33.178305955 +0000 UTC m=+395.973830925 I0404 10:25:33.178418 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:25:33.178805 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Issuing" to 2026-04-04 10:25:33.178754997 +0000 UTC m=+395.974279997 I0404 10:25:33.198379 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:25:33.198482 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-89.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:25:33.198508 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Issuing" to 2026-04-04 10:25:33.198501451 +0000 UTC m=+395.994026401 I0404 10:25:33.352987 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-89.nip.io-tls-xqzg4" condition "Approved" to 2026-04-04 10:25:33.352965547 +0000 UTC m=+396.148490517 I0404 10:25:33.372496 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-89.nip.io-tls-xqzg4" condition "Ready" to 2026-04-04 10:25:33.372477446 +0000 UTC m=+396.168002396 I0404 10:25:33.402443 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-89.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:25:33.402427811 +0000 UTC m=+396.197952761 I0404 10:25:33.431634 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-89.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-89.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:26:46.616383 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:26:46.616425 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-04 10:26:46.6164146 +0000 UTC m=+469.411939580 I0404 10:26:46.616523 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-04 10:26:46.616496393 +0000 UTC m=+469.412021343 E0404 10:26:46.628025 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:26:46.628094 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-04 10:26:46.628079749 +0000 UTC m=+469.423604729 E0404 10:26:46.628171 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0404 10:26:46.630540 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:26:46.630640 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:26:46.630668 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-04 10:26:46.630657535 +0000 UTC m=+469.426182485 E0404 10:26:46.640338 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0404 10:26:46.640487 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:26:46.640573 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0404 10:26:46.640633 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0404 10:26:46.665639 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:26:46.671705 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jqc4q" condition "Approved" to 2026-04-04 10:26:46.671688222 +0000 UTC m=+469.467213162 I0404 10:26:46.697949 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jqc4q" condition "Ready" to 2026-04-04 10:26:46.697935763 +0000 UTC m=+469.493460703 I0404 10:26:46.720445 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:26:46.720428838 +0000 UTC m=+469.515953788 I0404 10:26:46.742857 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:26:46.743177 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:26:46.743168928 +0000 UTC m=+469.538693878 I0404 10:26:46.756432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:26:46.757376 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:26:46.757610 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:26:46.757601247 +0000 UTC m=+469.553126197 I0404 10:26:51.641240 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:26:51.641225854 +0000 UTC m=+474.436750824 I0404 10:27:30.545101 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-04 10:27:30.54508611 +0000 UTC m=+513.340611060 I0404 10:27:30.546481 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:27:30.546528 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-04 10:27:30.546521977 +0000 UTC m=+513.342046917 I0404 10:27:30.546712 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:27:30.546730 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-04 10:27:30.546726662 +0000 UTC m=+513.342251602 I0404 10:27:30.546717 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-04 10:27:30.546699231 +0000 UTC m=+513.342224171 I0404 10:27:30.563067 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:27:30.563099 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-04 10:27:30.563093741 +0000 UTC m=+513.358618681 I0404 10:27:30.563110 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-04 10:27:30.563084911 +0000 UTC m=+513.358609851 I0404 10:27:30.579224 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.579271 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.579310 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:27:30.579332 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-04 10:27:30.579326417 +0000 UTC m=+513.374851367 I0404 10:27:30.579340 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-04 10:27:30.579334367 +0000 UTC m=+513.374859307 I0404 10:27:30.586193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.586263 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-04 10:27:30.586256683 +0000 UTC m=+513.381781633 I0404 10:27:30.685687 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.725882 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-6bv99" condition "Approved" to 2026-04-04 10:27:30.725870376 +0000 UTC m=+513.521395326 I0404 10:27:30.748209 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-6bv99" condition "Ready" to 2026-04-04 10:27:30.748190688 +0000 UTC m=+513.543715668 I0404 10:27:30.787946 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:30.787926025 +0000 UTC m=+513.583450985 I0404 10:27:30.818127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.819984 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.864387 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dfbrh" condition "Approved" to 2026-04-04 10:27:30.864372902 +0000 UTC m=+513.659897862 I0404 10:27:30.881610 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:30.883898 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-dfbrh" condition "Ready" to 2026-04-04 10:27:30.883884291 +0000 UTC m=+513.679409241 I0404 10:27:31.034785 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:31.034771822 +0000 UTC m=+513.830296772 I0404 10:27:31.134134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:31.134429 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:31.134422132 +0000 UTC m=+513.929947072 I0404 10:27:31.534633 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:31.584409 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:31.715760 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-pptvm" condition "Approved" to 2026-04-04 10:27:31.715743399 +0000 UTC m=+514.511268359 I0404 10:27:31.845402 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-pptvm" condition "Ready" to 2026-04-04 10:27:31.845384727 +0000 UTC m=+514.640909677 I0404 10:27:32.281933 1 issuing_controller.go:324] "next private key does not match CSR public key, waiting for requestmanager controller" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" resource_name="alertmanager-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="alertmanager-tls-pptvm" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="alertmanager-tls-xblmk" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0404 10:27:32.495252 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jqgwn" condition "Approved" to 2026-04-04 10:27:32.495233618 +0000 UTC m=+515.290758588 I0404 10:27:32.593707 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-jqgwn" condition "Ready" to 2026-04-04 10:27:32.593691148 +0000 UTC m=+515.389216118 I0404 10:27:33.048896 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:33.048764684 +0000 UTC m=+515.844289664 I0404 10:27:33.366478 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:33.366943 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:33.366938567 +0000 UTC m=+516.162463507 I0404 10:27:33.370932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:33.435060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:33.435435 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:33.435424569 +0000 UTC m=+516.230949539 I0404 10:27:39.791098 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" condition "Ready" to 2026-04-04 10:27:39.791079394 +0000 UTC m=+522.586604364 I0404 10:27:39.791809 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:27:39.791845 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" condition "Issuing" to 2026-04-04 10:27:39.791836843 +0000 UTC m=+522.587361793 I0404 10:27:39.807641 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w48zq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:39.807740 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:27:39.807773 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" condition "Issuing" to 2026-04-04 10:27:39.807763001 +0000 UTC m=+522.603287981 I0404 10:27:40.055251 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w48zq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:40.062442 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-w48zq-2z72v" condition "Approved" to 2026-04-04 10:27:40.062426408 +0000 UTC m=+522.857951348 I0404 10:27:40.084037 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-w48zq-2z72v" condition "Ready" to 2026-04-04 10:27:40.084021151 +0000 UTC m=+522.879546101 I0404 10:27:40.119448 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:40.119430297 +0000 UTC m=+522.914955247 I0404 10:27:40.137269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w48zq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:27:40.137637 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:27:40.137627513 +0000 UTC m=+522.933152453 I0404 10:27:40.155451 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-w48zq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-w48zq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:28:13.600484 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:28:13.600519 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-04 10:28:13.600511736 +0000 UTC m=+556.396036686 I0404 10:28:13.600909 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-04 10:28:13.600904266 +0000 UTC m=+556.396429216 I0404 10:28:13.616118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:28:13.616286 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:28:13.616376 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-04 10:28:13.616312801 +0000 UTC m=+556.411837771 I0404 10:28:13.870057 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-cptlh" condition "Approved" to 2026-04-04 10:28:13.870042984 +0000 UTC m=+556.665567934 I0404 10:28:13.892038 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-cptlh" condition "Ready" to 2026-04-04 10:28:13.892024547 +0000 UTC m=+556.687549497 I0404 10:28:13.922039 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:28:13.922022635 +0000 UTC m=+556.717547585 I0404 10:28:14.053153 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:28:14.053522 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:28:14.05351398 +0000 UTC m=+556.849038970 I0404 10:28:14.067116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:28:14.076627 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:28:14.077719 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:28:14.078166 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:28:14.07815701 +0000 UTC m=+556.873681970 I0404 10:31:36.189848 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-04 10:31:36.189769688 +0000 UTC m=+758.985294658 I0404 10:31:36.189978 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:31:36.190179 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-04 10:31:36.190089696 +0000 UTC m=+758.985614676 I0404 10:31:36.208825 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:31:36.208925 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:31:36.208971 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-04 10:31:36.208961986 +0000 UTC m=+759.004486956 I0404 10:31:36.393095 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:31:36.395782 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9dh65" condition "Approved" to 2026-04-04 10:31:36.395771461 +0000 UTC m=+759.191296411 I0404 10:31:36.414319 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-9dh65" condition "Ready" to 2026-04-04 10:31:36.414303074 +0000 UTC m=+759.209828044 I0404 10:31:36.439952 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:31:36.439941488 +0000 UTC m=+759.235466438 I0404 10:31:36.458296 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:31:36.511565 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:33:57.458673 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:33:57.458744 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-04 10:33:57.458735805 +0000 UTC m=+900.254260755 I0404 10:33:57.459275 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-04 10:33:57.459263268 +0000 UTC m=+900.254788218 I0404 10:33:57.474101 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:33:57.474154 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:33:57.474168 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-04 10:33:57.474162497 +0000 UTC m=+900.269687447 I0404 10:33:57.707974 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9f8sq" condition "Approved" to 2026-04-04 10:33:57.70795471 +0000 UTC m=+900.503479690 I0404 10:33:57.730484 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-9f8sq" condition "Ready" to 2026-04-04 10:33:57.730471784 +0000 UTC m=+900.525996734 I0404 10:33:57.756366 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:33:57.756355942 +0000 UTC m=+900.551880882 I0404 10:33:57.779586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:35:11.255059 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:35:11.255119 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-04 10:35:11.255112957 +0000 UTC m=+974.050637897 I0404 10:35:11.255337 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-04 10:35:11.255321282 +0000 UTC m=+974.050846252 I0404 10:35:11.272676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:35:11.272891 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:35:11.272925 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-04 10:35:11.27291745 +0000 UTC m=+974.068442400 I0404 10:35:11.407453 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:35:11.407584 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-rb8t5" condition "Approved" to 2026-04-04 10:35:11.407570448 +0000 UTC m=+974.203095428 I0404 10:35:11.428686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-rb8t5" condition "Ready" to 2026-04-04 10:35:11.428671376 +0000 UTC m=+974.224196356 I0404 10:35:11.457488 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:35:11.457475959 +0000 UTC m=+974.253000899 I0404 10:35:11.475094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:35:11.475466 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:35:11.475461027 +0000 UTC m=+974.270985967 I0404 10:35:11.494815 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:38:12.939778 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-04 10:38:12.939747843 +0000 UTC m=+1155.735272793 I0404 10:38:12.939883 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:38:12.939960 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-04 10:38:12.939950568 +0000 UTC m=+1155.735475538 I0404 10:38:12.955806 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:38:12.955901 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0404 10:38:12.955930 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-04 10:38:12.955921045 +0000 UTC m=+1155.751446015 I0404 10:38:13.218340 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:38:13.224135 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-frp5j" condition "Approved" to 2026-04-04 10:38:13.224122878 +0000 UTC m=+1156.019647858 I0404 10:38:13.239906 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-frp5j" condition "Ready" to 2026-04-04 10:38:13.239895389 +0000 UTC m=+1156.035420339 I0404 10:38:13.302504 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:38:13.302494712 +0000 UTC m=+1156.098019652 I0404 10:38:13.327098 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:38:13.327951 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:38:13.32794142 +0000 UTC m=+1156.123466360 I0404 10:38:13.349577 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:38:13.353197 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0404 10:38:13.353591 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-04 10:38:13.353580902 +0000 UTC m=+1156.149105882