I0309 01:39:44.953444 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0309 01:39:44.953596 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0309 01:39:44.953747 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0309 01:39:44.960881 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0309 01:39:44.961620 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0309 01:39:44.961634 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0309 01:39:44.961777 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0309 01:39:44.965850 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0309 01:39:44.984330 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0309 01:39:44.987325 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0309 01:39:44.989563 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0309 01:39:44.989591 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0309 01:39:44.989602 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0309 01:39:44.989675 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0309 01:39:44.995575 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0309 01:39:44.999773 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0309 01:39:45.002566 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0309 01:39:45.004725 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0309 01:39:45.006641 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0309 01:39:45.008543 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0309 01:39:45.010306 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0309 01:39:45.010379 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0309 01:39:45.015427 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0309 01:39:45.019762 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0309 01:39:45.019800 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0309 01:39:45.019826 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0309 01:39:45.022481 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0309 01:39:45.024409 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0309 01:39:45.026512 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0309 01:39:45.028424 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0309 01:39:45.030413 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0309 01:39:45.032421 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0309 01:39:45.034416 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0309 01:39:45.037468 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.039451 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.041543 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.041739 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.042007 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.042871 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.043016 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.043796 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.044342 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:45.068868 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0309 01:39:54.430021 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-09 01:39:54.430002025 +0000 UTC m=+9.511395321 I0309 01:39:55.198267 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:39:55.198354 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-09 01:39:55.198342073 +0000 UTC m=+10.279735369 I0309 01:39:55.200049 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-09 01:39:55.200023847 +0000 UTC m=+10.281417143 E0309 01:39:55.215072 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0309 01:39:55.215181 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-09 01:39:55.215170952 +0000 UTC m=+10.296564248 E0309 01:39:55.215219 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0309 01:39:55.216949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:39:55.217016 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:39:55.217032 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-09 01:39:55.21702712 +0000 UTC m=+10.298420376 E0309 01:39:55.229458 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0309 01:39:55.229886 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0309 01:39:55.229942 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0309 01:39:55.229987 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0309 01:39:55.264149 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:39:55.272531 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8zkxb" condition "Approved" to 2026-03-09 01:39:55.272513798 +0000 UTC m=+10.353907094 I0309 01:39:55.288672 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8zkxb" condition "Ready" to 2026-03-09 01:39:55.288661193 +0000 UTC m=+10.370054459 I0309 01:39:55.311740 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:39:55.311723018 +0000 UTC m=+10.393116314 I0309 01:39:55.328980 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:00.230483 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:40:00.230461377 +0000 UTC m=+15.311854673 I0309 01:40:22.620648 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:40:22.620682 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-09 01:40:22.620674235 +0000 UTC m=+37.702067491 I0309 01:40:22.621042 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-09 01:40:22.621017562 +0000 UTC m=+37.702410828 I0309 01:40:22.640798 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-09 01:40:22.640776001 +0000 UTC m=+37.722169267 I0309 01:40:22.650669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:22.650842 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-09 01:40:22.650828713 +0000 UTC m=+37.732222009 I0309 01:40:22.737558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:22.769392 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-sjqqs" condition "Approved" to 2026-03-09 01:40:22.7693618 +0000 UTC m=+37.850755076 I0309 01:40:22.803922 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-sjqqs" condition "Ready" to 2026-03-09 01:40:22.803903337 +0000 UTC m=+37.885296633 I0309 01:40:22.837937 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:40:22.837922312 +0000 UTC m=+37.919315578 I0309 01:40:22.862308 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:22.862909 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:40:22.862896435 +0000 UTC m=+37.944289701 I0309 01:40:22.869855 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:22.884759 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:22.884798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:40:22.885318 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:40:22.885306186 +0000 UTC m=+37.966699472 I0309 01:42:16.637007 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-09 01:42:16.636962968 +0000 UTC m=+151.718356264 I0309 01:42:16.637101 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:42:16.637192 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-09 01:42:16.637180723 +0000 UTC m=+151.718574019 E0309 01:42:16.656889 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0309 01:42:16.657016 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-09 01:42:16.656997875 +0000 UTC m=+151.738391161 I0309 01:42:16.657117 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0309 01:42:16.658878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:16.659014 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:42:16.659046 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-09 01:42:16.659032835 +0000 UTC m=+151.740426121 E0309 01:42:16.668868 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0309 01:42:16.668904 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:42:16.668903 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-09 01:42:16.668886596 +0000 UTC m=+151.750279852 I0309 01:42:16.668940 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-09 01:42:16.668932047 +0000 UTC m=+151.750325313 E0309 01:42:16.668981 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0309 01:42:16.669024 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0309 01:42:16.669076 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0309 01:42:16.685449 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:16.685532 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:42:16.685650 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-09 01:42:16.685643166 +0000 UTC m=+151.767036472 I0309 01:42:16.847584 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-kvnw8" condition "Approved" to 2026-03-09 01:42:16.847561181 +0000 UTC m=+151.928954467 I0309 01:42:16.882995 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-kvnw8" condition "Ready" to 2026-03-09 01:42:16.882979799 +0000 UTC m=+151.964373085 I0309 01:42:16.913681 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:42:16.913664152 +0000 UTC m=+151.995057418 I0309 01:42:16.926323 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:16.931977 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-6vgvq" condition "Approved" to 2026-03-09 01:42:16.931947583 +0000 UTC m=+152.013340879 I0309 01:42:16.932287 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:16.934942 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:42:16.934919913 +0000 UTC m=+152.016313209 I0309 01:42:16.946747 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:16.951924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-6vgvq" condition "Ready" to 2026-03-09 01:42:16.951904098 +0000 UTC m=+152.033297354 I0309 01:42:16.960113 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:21.670442 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:42:21.670421623 +0000 UTC m=+156.751814909 I0309 01:42:21.690412 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-6vgvq" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:42:21.690395399 +0000 UTC m=+156.771788665 I0309 01:42:21.719675 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:42:21.719657933 +0000 UTC m=+156.801051199 I0309 01:42:21.738966 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:42:21.739489 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:42:21.739479135 +0000 UTC m=+156.820872401 I0309 01:42:21.755193 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:44:58.628385 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.162-253-55-52.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:44:58.628445 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-52.nip.io-tls" condition "Issuing" to 2026-03-09 01:44:58.628418554 +0000 UTC m=+313.709811840 I0309 01:44:58.628498 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-52.nip.io-tls" condition "Ready" to 2026-03-09 01:44:58.628479265 +0000 UTC m=+313.709872561 I0309 01:44:58.643629 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.162-253-55-52.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-52.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:44:58.643703 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.162-253-55-52.nip.io-tls" condition "Ready" to 2026-03-09 01:44:58.643695399 +0000 UTC m=+313.725088665 I0309 01:44:58.767686 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.162-253-55-52.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-52.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:44:58.800745 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-52.nip.io-tls-2l6x9" condition "Approved" to 2026-03-09 01:44:58.80071679 +0000 UTC m=+313.882110086 I0309 01:44:58.820953 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.162-253-55-52.nip.io-tls-2l6x9" condition "Ready" to 2026-03-09 01:44:58.820928654 +0000 UTC m=+313.902321940 I0309 01:44:58.850765 1 conditions.go:192] Found status change for Certificate "keycloak.162-253-55-52.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:44:58.850740721 +0000 UTC m=+313.932134017 I0309 01:44:58.870173 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.162-253-55-52.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.162-253-55-52.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:46:14.363949 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:46:14.364011 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-09 01:46:14.363985104 +0000 UTC m=+389.445378410 I0309 01:46:14.364104 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-09 01:46:14.364079056 +0000 UTC m=+389.445472342 I0309 01:46:14.379453 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:46:14.379521 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:46:14.379539 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-09 01:46:14.379533924 +0000 UTC m=+389.460927190 E0309 01:46:14.381403 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0309 01:46:14.381502 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-09 01:46:14.381449723 +0000 UTC m=+389.462843009 E0309 01:46:14.381575 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0309 01:46:14.392028 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0309 01:46:14.392460 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0309 01:46:14.392524 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0309 01:46:14.392594 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0309 01:46:14.422171 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:46:14.422602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mdwfs" condition "Approved" to 2026-03-09 01:46:14.422574956 +0000 UTC m=+389.503968252 I0309 01:46:14.437056 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mdwfs" condition "Ready" to 2026-03-09 01:46:14.437030024 +0000 UTC m=+389.518423310 I0309 01:46:14.457808 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:46:14.457791939 +0000 UTC m=+389.539185235 I0309 01:46:14.473880 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:46:14.515581 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:46:19.393430 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:46:19.39341171 +0000 UTC m=+394.474805006 I0309 01:47:03.898683 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-09 01:47:03.89866224 +0000 UTC m=+438.980055506 I0309 01:47:03.900264 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:03.900293 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-09 01:47:03.900288513 +0000 UTC m=+438.981681779 I0309 01:47:03.900983 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-09 01:47:03.900977897 +0000 UTC m=+438.982371163 I0309 01:47:03.901056 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:03.901092 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-09 01:47:03.901089189 +0000 UTC m=+438.982482455 I0309 01:47:03.904924 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-09 01:47:03.904919335 +0000 UTC m=+438.986312591 I0309 01:47:03.905463 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:03.905482 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-09 01:47:03.905479237 +0000 UTC m=+438.986872493 I0309 01:47:03.921612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:03.921703 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-09 01:47:03.92169448 +0000 UTC m=+439.003087736 I0309 01:47:03.922075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:03.922137 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:03.922164 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-09 01:47:03.922157269 +0000 UTC m=+439.003550525 I0309 01:47:03.927538 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:03.927599 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:03.927709 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-09 01:47:03.927619108 +0000 UTC m=+439.009012364 I0309 01:47:04.077842 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xfbns" condition "Approved" to 2026-03-09 01:47:04.077824708 +0000 UTC m=+439.159217954 I0309 01:47:04.095860 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-xfbns" condition "Ready" to 2026-03-09 01:47:04.095848308 +0000 UTC m=+439.177241564 I0309 01:47:04.135142 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:04.135124472 +0000 UTC m=+439.216517768 I0309 01:47:04.170917 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:04.171246 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:04.171239333 +0000 UTC m=+439.252632589 I0309 01:47:04.188446 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:04.188995 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:04.221400 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-qxsv2" condition "Approved" to 2026-03-09 01:47:04.221385455 +0000 UTC m=+439.302778711 I0309 01:47:04.224921 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:04.225297 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:04.225287563 +0000 UTC m=+439.306680829 I0309 01:47:04.242011 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-qxsv2" condition "Ready" to 2026-03-09 01:47:04.241996867 +0000 UTC m=+439.323390123 I0309 01:47:04.248067 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-cxs7d" condition "Approved" to 2026-03-09 01:47:04.248048978 +0000 UTC m=+439.329442244 I0309 01:47:04.500286 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-cxs7d" condition "Ready" to 2026-03-09 01:47:04.500262735 +0000 UTC m=+439.581656031 I0309 01:47:04.792229 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:04.792207704 +0000 UTC m=+439.873600990 I0309 01:47:05.044273 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:05.044857 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:05.044846709 +0000 UTC m=+440.126239995 I0309 01:47:05.142067 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:05.142043611 +0000 UTC m=+440.223436897 I0309 01:47:05.441374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:05.441824 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:05.441814507 +0000 UTC m=+440.523207773 I0309 01:47:05.491999 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:05.538528 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:05.791767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:11.513655 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:11.513700 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" condition "Issuing" to 2026-03-09 01:47:11.513690212 +0000 UTC m=+446.595083468 I0309 01:47:11.513767 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" condition "Ready" to 2026-03-09 01:47:11.513744233 +0000 UTC m=+446.595137519 I0309 01:47:11.527334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:11.527403 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" condition "Ready" to 2026-03-09 01:47:11.527396636 +0000 UTC m=+446.608789922 I0309 01:47:12.063872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:12.189721 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4gtgh-27c4l" condition "Approved" to 2026-03-09 01:47:12.189704093 +0000 UTC m=+447.271097369 I0309 01:47:12.213707 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-4gtgh-27c4l" condition "Ready" to 2026-03-09 01:47:12.213688811 +0000 UTC m=+447.295082097 I0309 01:47:12.242930 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:12.242911245 +0000 UTC m=+447.324304501 I0309 01:47:12.265716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-4gtgh-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:34.187056 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-09 01:47:34.187032819 +0000 UTC m=+469.268426085 I0309 01:47:34.187094 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:34.187215 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-09 01:47:34.187204412 +0000 UTC m=+469.268597678 I0309 01:47:34.202133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:34.202209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:47:34.202232 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-09 01:47:34.202223332 +0000 UTC m=+469.283616598 I0309 01:47:34.375243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:34.380063 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-bkrlf" condition "Approved" to 2026-03-09 01:47:34.380047593 +0000 UTC m=+469.461440859 I0309 01:47:34.396285 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-bkrlf" condition "Ready" to 2026-03-09 01:47:34.396271508 +0000 UTC m=+469.477664774 I0309 01:47:34.426142 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:34.426117143 +0000 UTC m=+469.507510409 I0309 01:47:34.445374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:34.445780 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:47:34.445772475 +0000 UTC m=+469.527165741 I0309 01:47:34.455690 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:47:34.468849 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:50:56.401724 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-09 01:50:56.401650727 +0000 UTC m=+671.483043993 I0309 01:50:56.401909 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:50:56.401991 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-09 01:50:56.401980734 +0000 UTC m=+671.483374020 I0309 01:50:56.420031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:50:56.420113 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:50:56.420140 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-09 01:50:56.420130827 +0000 UTC m=+671.501524093 I0309 01:50:56.556195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-5llxl" condition "Approved" to 2026-03-09 01:50:56.556182556 +0000 UTC m=+671.637575812 I0309 01:50:56.575254 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-5llxl" condition "Ready" to 2026-03-09 01:50:56.575239876 +0000 UTC m=+671.656633132 I0309 01:50:56.599854 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:50:56.599837197 +0000 UTC m=+671.681230463 I0309 01:50:56.622132 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:50:56.622508 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:50:56.62249953 +0000 UTC m=+671.703892786 I0309 01:50:56.647338 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:50:56.653074 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:53:19.656484 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-09 01:53:19.656431152 +0000 UTC m=+814.737824438 I0309 01:53:19.656550 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:53:19.656660 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-09 01:53:19.656649076 +0000 UTC m=+814.738042362 I0309 01:53:19.670949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:53:19.671027 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:53:19.671050 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-09 01:53:19.671041043 +0000 UTC m=+814.752434309 I0309 01:53:19.824552 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-sp6fd" condition "Approved" to 2026-03-09 01:53:19.824535984 +0000 UTC m=+814.905929240 I0309 01:53:19.854774 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-sp6fd" condition "Ready" to 2026-03-09 01:53:19.854764567 +0000 UTC m=+814.936157833 I0309 01:53:19.885358 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:53:19.885341587 +0000 UTC m=+814.966734843 I0309 01:53:19.916137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:53:19.916695 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:53:19.916678682 +0000 UTC m=+814.998071978 I0309 01:53:19.940767 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:54:20.437099 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:54:20.437217 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-09 01:54:20.437210397 +0000 UTC m=+875.518603653 I0309 01:54:20.437149 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-09 01:54:20.437137255 +0000 UTC m=+875.518530551 I0309 01:54:20.455882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:54:20.455974 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:54:20.455994 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-09 01:54:20.455988631 +0000 UTC m=+875.537381897 I0309 01:54:20.788940 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-bgmbr" condition "Approved" to 2026-03-09 01:54:20.788918941 +0000 UTC m=+875.870312197 I0309 01:54:20.816645 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-bgmbr" condition "Ready" to 2026-03-09 01:54:20.816632963 +0000 UTC m=+875.898026229 I0309 01:54:20.865250 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:54:20.865228813 +0000 UTC m=+875.946622109 I0309 01:54:20.889768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:54:20.890410 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:54:20.890398394 +0000 UTC m=+875.971791680 I0309 01:54:20.899285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:54:20.909085 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:57:15.119540 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-09 01:57:15.119505962 +0000 UTC m=+1050.200899248 I0309 01:57:15.119748 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:57:15.119798 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-09 01:57:15.119786197 +0000 UTC m=+1050.201179463 I0309 01:57:15.137187 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:57:15.137257 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0309 01:57:15.137277 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-09 01:57:15.137269705 +0000 UTC m=+1050.218662971 I0309 01:57:15.418433 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-hnlrr" condition "Approved" to 2026-03-09 01:57:15.418420976 +0000 UTC m=+1050.499814232 I0309 01:57:15.439551 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-hnlrr" condition "Ready" to 2026-03-09 01:57:15.439532526 +0000 UTC m=+1050.520925822 I0309 01:57:15.474392 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:57:15.47436347 +0000 UTC m=+1050.555756766 I0309 01:57:15.491291 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0309 01:57:15.491633 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-09 01:57:15.491622854 +0000 UTC m=+1050.573016140 I0309 01:57:15.517118 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"