I0331 20:22:40.015002 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0331 20:22:40.015151 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0331 20:22:40.015254 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0331 20:22:40.020575 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0331 20:22:40.021187 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0331 20:22:40.021232 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0331 20:22:40.021252 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0331 20:22:40.027283 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0331 20:22:40.044311 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0331 20:22:40.050374 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0331 20:22:40.052991 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0331 20:22:40.055492 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0331 20:22:40.058052 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0331 20:22:40.058090 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0331 20:22:40.063337 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0331 20:22:40.066007 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0331 20:22:40.067696 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0331 20:22:40.067720 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0331 20:22:40.067859 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0331 20:22:40.069791 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0331 20:22:40.072005 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0331 20:22:40.073744 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0331 20:22:40.073767 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0331 20:22:40.073810 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0331 20:22:40.075673 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0331 20:22:40.077462 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0331 20:22:40.079363 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0331 20:22:40.086486 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0331 20:22:40.090746 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0331 20:22:40.093840 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0331 20:22:40.095768 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0331 20:22:40.095962 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0331 20:22:40.098341 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0331 20:22:40.101096 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.104838 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.105396 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.105502 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.105522 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.105614 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.105743 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.106113 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.106411 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:40.191546 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0331 20:22:50.653344 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-03-31 20:22:50.653324622 +0000 UTC m=+10.678503525 I0331 20:22:51.441180 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:22:51.441266 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-03-31 20:22:51.441253792 +0000 UTC m=+11.466432725 I0331 20:22:51.441274 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 20:22:51.441250042 +0000 UTC m=+11.466428975 E0331 20:22:51.457372 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:22:51.457443 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-03-31 20:22:51.457428718 +0000 UTC m=+11.482607631 E0331 20:22:51.457481 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:22:51.460947 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:51.461014 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-03-31 20:22:51.461005813 +0000 UTC m=+11.486184716 E0331 20:22:51.469496 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0331 20:22:51.469605 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:22:51.469645 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:22:51.469686 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0331 20:22:51.478035 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:51.500412 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-bxbh8" condition "Approved" to 2026-03-31 20:22:51.500400333 +0000 UTC m=+11.525579246 I0331 20:22:51.512408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-bxbh8" condition "Ready" to 2026-03-31 20:22:51.51239243 +0000 UTC m=+11.537571363 I0331 20:22:51.536021 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:51.536007023 +0000 UTC m=+11.561185936 I0331 20:22:51.554090 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:51.554721 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:51.554711669 +0000 UTC m=+11.579890602 I0331 20:22:51.570029 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:22:51.570390 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:51.570376243 +0000 UTC m=+11.595555186 I0331 20:22:56.470375 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:22:56.470357607 +0000 UTC m=+16.495536510 I0331 20:23:18.297823 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-03-31 20:23:18.297805944 +0000 UTC m=+38.322984857 I0331 20:23:18.297945 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:23:18.299258 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 20:23:18.299247429 +0000 UTC m=+38.324426372 I0331 20:23:18.308093 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-03-31 20:23:18.308078029 +0000 UTC m=+38.333256942 I0331 20:23:18.317123 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:23:18.317178 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:23:18.317195 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-03-31 20:23:18.317190676 +0000 UTC m=+38.342369589 I0331 20:23:18.657276 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bmbgk" condition "Approved" to 2026-03-31 20:23:18.657259163 +0000 UTC m=+38.682438096 I0331 20:23:18.695171 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bmbgk" condition "Ready" to 2026-03-31 20:23:18.695151576 +0000 UTC m=+38.720330509 I0331 20:23:18.733130 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:23:18.733111523 +0000 UTC m=+38.758290436 I0331 20:23:18.756262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:23:18.756628 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:23:18.756619633 +0000 UTC m=+38.781798536 I0331 20:23:18.777663 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:23:18.778067 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:23:18.778054535 +0000 UTC m=+38.803233448 I0331 20:25:04.361195 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-03-31 20:25:04.361152244 +0000 UTC m=+144.386331177 I0331 20:25:04.361271 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:25:04.361546 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 20:25:04.361530494 +0000 UTC m=+144.386709427 E0331 20:25:04.377449 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:25:04.377506 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-03-31 20:25:04.377495945 +0000 UTC m=+144.402674858 I0331 20:25:04.377563 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:25:04.380420 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:25:04.384545 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:25:04.384783 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-03-31 20:25:04.384777399 +0000 UTC m=+144.409956312 E0331 20:25:04.421410 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0331 20:25:04.421543 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0331 20:25:04.421574 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0331 20:25:04.421629 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0331 20:25:04.424911 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-03-31 20:25:04.424892566 +0000 UTC m=+144.450071509 I0331 20:25:04.425238 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:25:04.425322 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 20:25:04.425314436 +0000 UTC m=+144.450493339 I0331 20:25:04.443285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:25:04.443410 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:25:04.443444 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-03-31 20:25:04.443437069 +0000 UTC m=+144.468615982 I0331 20:25:04.683165 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-n6jcb" condition "Approved" to 2026-03-31 20:25:04.683140939 +0000 UTC m=+144.708319872 I0331 20:25:04.727414 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-n6jcb" condition "Ready" to 2026-03-31 20:25:04.727403295 +0000 UTC m=+144.752582238 I0331 20:25:04.831776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-wtnc8" condition "Approved" to 2026-03-31 20:25:04.831753165 +0000 UTC m=+144.856932108 I0331 20:25:04.861770 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-wtnc8" condition "Ready" to 2026-03-31 20:25:04.861754882 +0000 UTC m=+144.886933795 I0331 20:25:04.891186 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:25:04.891155804 +0000 UTC m=+144.916334747 I0331 20:25:04.915448 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:25:04.915872 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:25:04.915863893 +0000 UTC m=+144.941042806 I0331 20:25:04.921953 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:25:04.931060 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:25:04.931448 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:25:04.931435215 +0000 UTC m=+144.956614128 I0331 20:25:09.422905 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:25:09.422885123 +0000 UTC m=+149.448064056 I0331 20:25:09.441536 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-n6jcb" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:25:09.441528168 +0000 UTC m=+149.466707081 I0331 20:25:09.470656 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:25:09.470649053 +0000 UTC m=+149.495827946 I0331 20:25:09.488554 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:52.575158 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-240.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:27:52.575224 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-240.nip.io-tls" condition "Issuing" to 2026-03-31 20:27:52.575209165 +0000 UTC m=+312.600388108 I0331 20:27:52.575386 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-240.nip.io-tls" condition "Ready" to 2026-03-31 20:27:52.575361539 +0000 UTC m=+312.600540452 I0331 20:27:52.593269 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-240.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-240.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:52.593403 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-240.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:27:52.593450 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-240.nip.io-tls" condition "Issuing" to 2026-03-31 20:27:52.593438311 +0000 UTC m=+312.618617254 I0331 20:27:52.922191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-240.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-240.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:52.932010 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-240.nip.io-tls-gv5ps" condition "Approved" to 2026-03-31 20:27:52.931990917 +0000 UTC m=+312.957169840 I0331 20:27:52.955982 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-240.nip.io-tls-gv5ps" condition "Ready" to 2026-03-31 20:27:52.95596106 +0000 UTC m=+312.981140003 I0331 20:27:52.985070 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-240.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:27:52.985050206 +0000 UTC m=+313.010229099 I0331 20:27:53.007680 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-240.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-240.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:53.008049 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-240.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:27:53.008030815 +0000 UTC m=+313.033209738 I0331 20:27:53.017224 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-240.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-240.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:27:53.029699 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-240.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-240.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:04.379895 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:29:04.379871871 +0000 UTC m=+384.405050814 I0331 20:29:04.379935 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:04.380005 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-03-31 20:29:04.379985444 +0000 UTC m=+384.405164387 E0331 20:29:04.393118 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:29:04.393171 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-03-31 20:29:04.393162698 +0000 UTC m=+384.418341621 E0331 20:29:04.393214 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0331 20:29:04.394838 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:04.394996 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-03-31 20:29:04.394966252 +0000 UTC m=+384.420145165 E0331 20:29:04.411170 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0331 20:29:04.411335 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:29:04.411384 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0331 20:29:04.411451 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0331 20:29:04.414724 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:04.436559 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-lst55" condition "Approved" to 2026-03-31 20:29:04.436544223 +0000 UTC m=+384.461723156 I0331 20:29:04.453131 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-lst55" condition "Ready" to 2026-03-31 20:29:04.453109767 +0000 UTC m=+384.478288700 I0331 20:29:04.483612 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:04.483599274 +0000 UTC m=+384.508778177 I0331 20:29:04.504004 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:04.504496 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:04.504483523 +0000 UTC m=+384.529662436 I0331 20:29:04.520748 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:09.412089 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:09.412069687 +0000 UTC m=+389.437248620 I0331 20:29:50.169476 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-03-31 20:29:50.169455234 +0000 UTC m=+430.194634137 I0331 20:29:50.170153 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-03-31 20:29:50.170130829 +0000 UTC m=+430.195309752 I0331 20:29:50.170737 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:50.170777 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 20:29:50.170773635 +0000 UTC m=+430.195952538 I0331 20:29:50.170805 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:50.171385 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 20:29:50.171375049 +0000 UTC m=+430.196553982 I0331 20:29:50.175975 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-03-31 20:29:50.175963408 +0000 UTC m=+430.201142311 I0331 20:29:50.176254 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:50.176280 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 20:29:50.176276595 +0000 UTC m=+430.201455508 I0331 20:29:50.202494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:50.202576 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:50.202600 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-03-31 20:29:50.202591711 +0000 UTC m=+430.227770614 I0331 20:29:50.202829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:50.203047 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:50.203115 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-03-31 20:29:50.203101793 +0000 UTC m=+430.228280736 I0331 20:29:50.214866 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:50.214966 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:50.214994 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-03-31 20:29:50.214986225 +0000 UTC m=+430.240165118 I0331 20:29:50.324876 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:50.337799 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bjr5k" condition "Approved" to 2026-03-31 20:29:50.337783932 +0000 UTC m=+430.362962835 I0331 20:29:50.360230 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-bjr5k" condition "Ready" to 2026-03-31 20:29:50.360207875 +0000 UTC m=+430.385386818 I0331 20:29:50.387451 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:50.387434092 +0000 UTC m=+430.412612985 I0331 20:29:50.414553 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:50.430527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:50.442377 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-79n98" condition "Approved" to 2026-03-31 20:29:50.442361076 +0000 UTC m=+430.467539979 I0331 20:29:50.458831 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-79n98" condition "Ready" to 2026-03-31 20:29:50.458814257 +0000 UTC m=+430.483993170 I0331 20:29:50.664099 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-zd4sr" condition "Approved" to 2026-03-31 20:29:50.664078422 +0000 UTC m=+430.689257325 E0331 20:29:50.702023 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-ck2j5\" not found" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0331 20:29:50.761683 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:50.761606889 +0000 UTC m=+430.786785832 I0331 20:29:51.015920 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-zd4sr" condition "Ready" to 2026-03-31 20:29:51.01589561 +0000 UTC m=+431.041074543 I0331 20:29:51.210061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:51.462319 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:51.462296143 +0000 UTC m=+431.487475086 I0331 20:29:51.612619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:51.907860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:58.006071 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:58.006119 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" condition "Issuing" to 2026-03-31 20:29:58.006106394 +0000 UTC m=+438.031285337 I0331 20:29:58.006153 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" condition "Ready" to 2026-03-31 20:29:58.006126174 +0000 UTC m=+438.031305107 I0331 20:29:58.023534 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:58.023632 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:29:58.023658 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" condition "Issuing" to 2026-03-31 20:29:58.023647001 +0000 UTC m=+438.048825914 I0331 20:29:58.215014 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mp5rq-2j5ht" condition "Approved" to 2026-03-31 20:29:58.214991566 +0000 UTC m=+438.240170479 I0331 20:29:58.240979 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-mp5rq-2j5ht" condition "Ready" to 2026-03-31 20:29:58.240965033 +0000 UTC m=+438.266143926 I0331 20:29:58.280810 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:58.280795879 +0000 UTC m=+438.305974792 I0331 20:29:58.308227 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:58.308795 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:58.308775174 +0000 UTC m=+438.333954087 I0331 20:29:58.327332 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:29:58.327838 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-mp5rq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:29:58.327823896 +0000 UTC m=+438.353002839 I0331 20:30:18.490932 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:30:18.491043 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-03-31 20:30:18.491025941 +0000 UTC m=+458.516204884 I0331 20:30:18.491620 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 20:30:18.491607924 +0000 UTC m=+458.516786877 I0331 20:30:18.517047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:30:18.517125 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-03-31 20:30:18.51711614 +0000 UTC m=+458.542295053 I0331 20:30:18.733439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:30:18.762758 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-zkdsh" condition "Approved" to 2026-03-31 20:30:18.762732785 +0000 UTC m=+458.787911728 I0331 20:30:18.793461 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-zkdsh" condition "Ready" to 2026-03-31 20:30:18.793449275 +0000 UTC m=+458.818628188 I0331 20:30:18.839613 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:30:18.83959466 +0000 UTC m=+458.864773583 I0331 20:30:18.866757 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:30:18.867075 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:30:18.867068983 +0000 UTC m=+458.892247886 I0331 20:30:18.892996 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:30:18.893296 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:30:18.893290096 +0000 UTC m=+458.918468989 I0331 20:33:45.611908 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 20:33:45.611881973 +0000 UTC m=+665.637060906 I0331 20:33:45.611956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:33:45.611993 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-03-31 20:33:45.611986125 +0000 UTC m=+665.637165058 I0331 20:33:45.629985 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:45.630129 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-03-31 20:33:45.630115474 +0000 UTC m=+665.655294407 I0331 20:33:45.929281 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:45.978427 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kv9ht" condition "Approved" to 2026-03-31 20:33:45.978406142 +0000 UTC m=+666.003585035 I0331 20:33:45.999773 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-kv9ht" condition "Ready" to 2026-03-31 20:33:45.999758336 +0000 UTC m=+666.024937239 I0331 20:33:46.035641 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:46.035623465 +0000 UTC m=+666.060802408 I0331 20:33:46.062681 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:46.063206 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:46.063192367 +0000 UTC m=+666.088371310 I0331 20:33:46.086005 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:33:46.086465 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:33:46.086454467 +0000 UTC m=+666.111633380 I0331 20:36:17.985617 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:36:17.985725 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-03-31 20:36:17.985710435 +0000 UTC m=+818.010889368 I0331 20:36:17.985699 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 20:36:17.985677034 +0000 UTC m=+818.010855967 I0331 20:36:18.005115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:18.005233 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-03-31 20:36:18.005220155 +0000 UTC m=+818.030399088 I0331 20:36:18.086897 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:18.117658 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-zjzqt" condition "Approved" to 2026-03-31 20:36:18.117646587 +0000 UTC m=+818.142825490 I0331 20:36:18.134333 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-zjzqt" condition "Ready" to 2026-03-31 20:36:18.13431725 +0000 UTC m=+818.159496193 I0331 20:36:18.162294 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:36:18.162277629 +0000 UTC m=+818.187456542 I0331 20:36:18.188438 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:18.188869 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:36:18.188860666 +0000 UTC m=+818.214039589 I0331 20:36:18.203232 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:36:18.203550 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:36:18.203543072 +0000 UTC m=+818.228721995 I0331 20:37:25.829565 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:37:25.829619 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 20:37:25.829600902 +0000 UTC m=+885.854779825 I0331 20:37:25.829613 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-03-31 20:37:25.829602942 +0000 UTC m=+885.854781855 I0331 20:37:25.846309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:37:25.846430 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-03-31 20:37:25.846419849 +0000 UTC m=+885.871598792 I0331 20:37:25.954933 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:37:25.996596 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pgz6m" condition "Approved" to 2026-03-31 20:37:25.996581959 +0000 UTC m=+886.021760872 I0331 20:37:26.016206 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-pgz6m" condition "Ready" to 2026-03-31 20:37:26.016190872 +0000 UTC m=+886.041369795 I0331 20:37:26.047434 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:37:26.047422678 +0000 UTC m=+886.072601571 I0331 20:37:26.080024 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:35.628283 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:40:35.628493 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-03-31 20:40:35.628480866 +0000 UTC m=+1075.653659769 I0331 20:40:35.628496 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 20:40:35.628480406 +0000 UTC m=+1075.653659399 I0331 20:40:35.647094 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:35.647203 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0331 20:40:35.647233 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-03-31 20:40:35.647224561 +0000 UTC m=+1075.672403474 I0331 20:40:35.834222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:35.839174 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-nw45h" condition "Approved" to 2026-03-31 20:40:35.839162888 +0000 UTC m=+1075.864341831 I0331 20:40:35.856679 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-nw45h" condition "Ready" to 2026-03-31 20:40:35.856666244 +0000 UTC m=+1075.881845167 I0331 20:40:35.887726 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:40:35.887714403 +0000 UTC m=+1075.912893316 I0331 20:40:35.907524 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:35.910949 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:40:35.910939176 +0000 UTC m=+1075.936118099 I0331 20:40:35.921902 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0331 20:40:35.922235 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-03-31 20:40:35.922226394 +0000 UTC m=+1075.947405307 I0331 20:40:35.926888 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"