I0416 06:12:04.392247 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0416 06:12:04.392398 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0416 06:12:04.392509 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0416 06:12:04.397729 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0416 06:12:04.398155 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0416 06:12:04.398461 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0416 06:12:04.398468 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0416 06:12:04.400793 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0416 06:12:04.416602 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0416 06:12:04.423079 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0416 06:12:04.428575 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0416 06:12:04.428614 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0416 06:12:04.428668 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0416 06:12:04.431726 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0416 06:12:04.434375 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0416 06:12:04.436520 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0416 06:12:04.438281 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0416 06:12:04.438305 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0416 06:12:04.440435 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0416 06:12:04.445281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0416 06:12:04.447422 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0416 06:12:04.447447 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0416 06:12:04.447515 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0416 06:12:04.449929 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0416 06:12:04.451881 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0416 06:12:04.453691 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0416 06:12:04.455760 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0416 06:12:04.457406 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0416 06:12:04.459208 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0416 06:12:04.461695 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0416 06:12:04.461974 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0416 06:12:04.466914 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0416 06:12:04.469534 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0416 06:12:04.472575 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.472963 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.474410 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.496807 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.515366 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.538124 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.554416 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.561872 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.574144 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:04.590996 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0416 06:12:15.874440 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-16 06:12:15.874422529 +0000 UTC m=+11.517408490 I0416 06:12:16.579867 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-16 06:12:16.579853573 +0000 UTC m=+12.222839514 I0416 06:12:16.580304 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:12:16.580382 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-16 06:12:16.580366345 +0000 UTC m=+12.223352326 I0416 06:12:16.603682 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:12:16.603879 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-16 06:12:16.603857043 +0000 UTC m=+12.246843004 E0416 06:12:16.604004 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 06:12:16.604146 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-16 06:12:16.604136229 +0000 UTC m=+12.247122170 E0416 06:12:16.604180 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 06:12:16.620961 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0416 06:12:16.621439 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" E0416 06:12:16.631149 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 06:12:16.631201 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 06:12:16.631275 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0416 06:12:16.655418 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nqbbm" condition "Approved" to 2026-04-16 06:12:16.655402465 +0000 UTC m=+12.298388406 I0416 06:12:16.671849 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-nqbbm" condition "Ready" to 2026-04-16 06:12:16.671832795 +0000 UTC m=+12.314818736 I0416 06:12:16.694280 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:12:16.694264817 +0000 UTC m=+12.337250748 I0416 06:12:16.712931 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:12:21.624980 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:12:21.624957081 +0000 UTC m=+17.267943052 I0416 06:12:48.303204 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-16 06:12:48.303167161 +0000 UTC m=+43.946153132 I0416 06:12:48.303334 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:12:48.303415 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-16 06:12:48.303401917 +0000 UTC m=+43.946387908 I0416 06:12:48.319708 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-16 06:12:48.319694583 +0000 UTC m=+43.962680534 I0416 06:12:48.341116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:12:48.341259 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:12:48.341301 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-16 06:12:48.341294336 +0000 UTC m=+43.984280277 I0416 06:12:48.589418 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-h5dcg" condition "Approved" to 2026-04-16 06:12:48.589401081 +0000 UTC m=+44.232387022 I0416 06:12:48.625910 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-h5dcg" condition "Ready" to 2026-04-16 06:12:48.625890637 +0000 UTC m=+44.268876578 I0416 06:12:48.660304 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:12:48.660250932 +0000 UTC m=+44.303236873 I0416 06:12:48.684021 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:14:55.679630 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:14:55.679684 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-16 06:14:55.679679242 +0000 UTC m=+171.322665183 I0416 06:14:55.679680 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-16 06:14:55.679668171 +0000 UTC m=+171.322654132 E0416 06:14:55.693963 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 06:14:55.694023 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-16 06:14:55.694016086 +0000 UTC m=+171.337002017 I0416 06:14:55.694044 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 06:14:55.697192 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:14:55.697285 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:14:55.697317 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-16 06:14:55.697310755 +0000 UTC m=+171.340296706 E0416 06:14:55.704073 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0416 06:14:55.704431 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 06:14:55.704475 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 06:14:55.704529 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0416 06:14:55.705877 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:14:55.705910 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-16 06:14:55.705902041 +0000 UTC m=+171.348887982 I0416 06:14:55.706194 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-16 06:14:55.706183658 +0000 UTC m=+171.349169629 I0416 06:14:55.721129 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:14:55.721277 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-16 06:14:55.721226718 +0000 UTC m=+171.364212659 I0416 06:14:55.850097 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-8sv4s" condition "Approved" to 2026-04-16 06:14:55.850085239 +0000 UTC m=+171.493071170 I0416 06:14:55.881042 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-8sv4s" condition "Ready" to 2026-04-16 06:14:55.881027471 +0000 UTC m=+171.524013432 I0416 06:14:55.881711 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:14:55.908526 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:14:55.90851368 +0000 UTC m=+171.551499621 I0416 06:14:55.913576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-s8jz5" condition "Approved" to 2026-04-16 06:14:55.913566392 +0000 UTC m=+171.556552333 I0416 06:14:55.932823 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:14:55.933076 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:14:55.933069649 +0000 UTC m=+171.576055590 I0416 06:14:55.934754 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-s8jz5" condition "Ready" to 2026-04-16 06:14:55.93474052 +0000 UTC m=+171.577726461 I0416 06:14:55.957723 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:15:00.705702 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:15:00.705676221 +0000 UTC m=+176.348662182 I0416 06:15:00.722964 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-s8jz5" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:15:00.722944805 +0000 UTC m=+176.365930746 I0416 06:15:00.757021 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:15:00.757004072 +0000 UTC m=+176.399990033 I0416 06:15:00.775134 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:15:00.775831 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:15:00.775815463 +0000 UTC m=+176.418801424 I0416 06:15:00.798939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:15:00.804547 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:17:37.548052 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-38.nip.io-tls" condition "Ready" to 2026-04-16 06:17:37.548019357 +0000 UTC m=+333.191005288 I0416 06:17:37.548392 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-38.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:17:37.548409 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-38.nip.io-tls" condition "Issuing" to 2026-04-16 06:17:37.548406426 +0000 UTC m=+333.191392357 I0416 06:17:37.569420 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-38.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-38.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:17:37.569516 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-38.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:17:37.569570 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-38.nip.io-tls" condition "Issuing" to 2026-04-16 06:17:37.569561959 +0000 UTC m=+333.212547900 I0416 06:17:37.837064 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-38.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-38.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:17:37.847786 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-38.nip.io-tls-vbchs" condition "Approved" to 2026-04-16 06:17:37.847766548 +0000 UTC m=+333.490752519 I0416 06:17:37.872059 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-38.nip.io-tls-vbchs" condition "Ready" to 2026-04-16 06:17:37.872045766 +0000 UTC m=+333.515031707 I0416 06:17:37.900827 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-38.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:17:37.900579115 +0000 UTC m=+333.543565086 I0416 06:17:37.934145 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-38.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-38.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:17:37.934612 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-38.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:17:37.934601744 +0000 UTC m=+333.577587675 I0416 06:17:37.957709 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-38.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-38.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:18:51.658461 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:18:51.658509 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-16 06:18:51.658497393 +0000 UTC m=+407.301483354 I0416 06:18:51.658512 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-16 06:18:51.658499123 +0000 UTC m=+407.301485094 E0416 06:18:51.671980 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 06:18:51.672038 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-16 06:18:51.672029585 +0000 UTC m=+407.315015556 E0416 06:18:51.672100 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 06:18:51.674058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:18:51.674217 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:18:51.674259 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-16 06:18:51.674245368 +0000 UTC m=+407.317231319 E0416 06:18:51.681866 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0416 06:18:51.682258 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 06:18:51.682336 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 06:18:51.682423 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0416 06:18:51.714417 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-vqr4x" condition "Approved" to 2026-04-16 06:18:51.714403453 +0000 UTC m=+407.357389394 I0416 06:18:51.726823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-vqr4x" condition "Ready" to 2026-04-16 06:18:51.726810559 +0000 UTC m=+407.369796530 I0416 06:18:51.749541 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:18:51.749530479 +0000 UTC m=+407.392516410 I0416 06:18:51.766878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:18:51.767186 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:18:51.76717927 +0000 UTC m=+407.410165211 I0416 06:18:51.789222 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:18:56.682722 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:18:56.68270856 +0000 UTC m=+412.325694521 I0416 06:19:36.341751 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-16 06:19:36.341609852 +0000 UTC m=+451.984595793 I0416 06:19:36.342217 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:19:36.342246 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-16 06:19:36.342241757 +0000 UTC m=+451.985227688 I0416 06:19:36.342425 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-16 06:19:36.342408591 +0000 UTC m=+451.985394562 I0416 06:19:36.342603 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:19:36.342624 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-16 06:19:36.342621536 +0000 UTC m=+451.985607467 I0416 06:19:36.351311 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:19:36.351365 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-16 06:19:36.351354404 +0000 UTC m=+451.994340345 I0416 06:19:36.351821 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-16 06:19:36.351815795 +0000 UTC m=+451.994801716 I0416 06:19:36.371950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:36.371996 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-16 06:19:36.371990715 +0000 UTC m=+452.014976646 I0416 06:19:36.377903 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:36.377971 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-16 06:19:36.377963047 +0000 UTC m=+452.020948998 I0416 06:19:36.388555 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:36.389301 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-16 06:19:36.388670222 +0000 UTC m=+452.031656153 I0416 06:19:36.549000 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:36.565678 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:36.567031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:36.585942 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-dbfjj" condition "Approved" to 2026-04-16 06:19:36.585923457 +0000 UTC m=+452.228909418 I0416 06:19:36.600264 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rzvwg" condition "Approved" to 2026-04-16 06:19:36.600226787 +0000 UTC m=+452.243212748 I0416 06:19:36.601992 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lz2mb" condition "Approved" to 2026-04-16 06:19:36.601981619 +0000 UTC m=+452.244967560 I0416 06:19:36.613312 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-dbfjj" condition "Ready" to 2026-04-16 06:19:36.613297588 +0000 UTC m=+452.256283529 I0416 06:19:36.617543 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rzvwg" condition "Ready" to 2026-04-16 06:19:36.617531189 +0000 UTC m=+452.260517130 I0416 06:19:36.620210 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-lz2mb" condition "Ready" to 2026-04-16 06:19:36.620202043 +0000 UTC m=+452.263187984 I0416 06:19:36.882922 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:36.882907225 +0000 UTC m=+452.525893166 I0416 06:19:36.934213 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:36.934197316 +0000 UTC m=+452.577183267 I0416 06:19:37.086409 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:37.086398198 +0000 UTC m=+452.729384139 I0416 06:19:37.183003 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:37.183603 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:37.183588031 +0000 UTC m=+452.826573992 I0416 06:19:37.283302 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:37.432612 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:37.433026 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:37.433018388 +0000 UTC m=+453.076004329 I0416 06:19:37.883558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:37.979675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:38.078343 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:38.145334 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:38.434304 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:44.478063 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:19:44.478102 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" condition "Issuing" to 2026-04-16 06:19:44.478093349 +0000 UTC m=+460.121079290 I0416 06:19:44.478375 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" condition "Ready" to 2026-04-16 06:19:44.478354195 +0000 UTC m=+460.121340166 I0416 06:19:44.492992 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cltqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:44.493072 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" condition "Ready" to 2026-04-16 06:19:44.493064136 +0000 UTC m=+460.136050097 I0416 06:19:44.565128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cltqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:44.596630 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-cltqp-6w9sx" condition "Approved" to 2026-04-16 06:19:44.596615035 +0000 UTC m=+460.239600966 I0416 06:19:44.620576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-cltqp-6w9sx" condition "Ready" to 2026-04-16 06:19:44.620564526 +0000 UTC m=+460.263550467 I0416 06:19:44.647537 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:44.647519889 +0000 UTC m=+460.290505820 I0416 06:19:44.668948 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cltqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:19:44.669238 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:19:44.669228146 +0000 UTC m=+460.312214077 I0416 06:19:44.689720 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-cltqp-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-cltqp-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:20:19.321388 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:20:19.321426 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-16 06:20:19.321419598 +0000 UTC m=+494.964405529 I0416 06:20:19.321862 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-16 06:20:19.321834738 +0000 UTC m=+494.964820719 I0416 06:20:19.337698 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:20:19.337775 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-16 06:20:19.337767248 +0000 UTC m=+494.980753189 I0416 06:20:20.031719 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:20:20.067408 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-kn4fr" condition "Approved" to 2026-04-16 06:20:20.067395745 +0000 UTC m=+495.710381686 I0416 06:20:20.086654 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-kn4fr" condition "Ready" to 2026-04-16 06:20:20.086641254 +0000 UTC m=+495.729627185 I0416 06:20:20.114057 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:20:20.114043487 +0000 UTC m=+495.757029408 I0416 06:20:20.135390 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:20:20.135798 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:20:20.135791235 +0000 UTC m=+495.778777176 I0416 06:20:20.142794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:20:20.155940 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:20:20.156327 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:20:20.156316455 +0000 UTC m=+495.799302396 I0416 06:23:41.929886 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:23:41.929969 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-16 06:23:41.929962356 +0000 UTC m=+697.572948297 I0416 06:23:41.929870 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-16 06:23:41.929822453 +0000 UTC m=+697.572808424 I0416 06:23:41.945987 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:23:41.946059 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:23:41.946079 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-16 06:23:41.946075207 +0000 UTC m=+697.589061138 I0416 06:23:42.226772 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:23:42.235686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-gw7wf" condition "Approved" to 2026-04-16 06:23:42.235666507 +0000 UTC m=+697.878652478 I0416 06:23:42.259725 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-gw7wf" condition "Ready" to 2026-04-16 06:23:42.259709136 +0000 UTC m=+697.902695077 I0416 06:23:42.299964 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:23:42.299947117 +0000 UTC m=+697.942933068 I0416 06:23:42.332495 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:23:42.333185 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:23:42.333180104 +0000 UTC m=+697.976166025 I0416 06:23:42.348701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:23:42.349341 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:23:42.349311925 +0000 UTC m=+697.992297896 I0416 06:26:10.146522 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-16 06:26:10.146487422 +0000 UTC m=+845.789473363 I0416 06:26:10.146782 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:26:10.146863 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-16 06:26:10.14685304 +0000 UTC m=+845.789839011 I0416 06:26:10.162714 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:26:10.162780 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:26:10.162795 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-16 06:26:10.162790187 +0000 UTC m=+845.805776128 I0416 06:26:10.305611 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-wv7fl" condition "Approved" to 2026-04-16 06:26:10.305597151 +0000 UTC m=+845.948583092 I0416 06:26:10.323228 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-wv7fl" condition "Ready" to 2026-04-16 06:26:10.323218077 +0000 UTC m=+845.966204018 I0416 06:26:10.352907 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:26:10.352890208 +0000 UTC m=+845.995876149 I0416 06:26:10.373628 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:27:18.465476 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-16 06:27:18.465452375 +0000 UTC m=+914.108438336 I0416 06:27:18.465601 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:27:18.465675 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-16 06:27:18.46566381 +0000 UTC m=+914.108649771 I0416 06:27:18.488701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:27:18.488808 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-16 06:27:18.488798026 +0000 UTC m=+914.131783987 I0416 06:27:18.829661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:27:18.864814 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-5q5bz" condition "Approved" to 2026-04-16 06:27:18.864796261 +0000 UTC m=+914.507782282 I0416 06:27:18.880727 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-5q5bz" condition "Ready" to 2026-04-16 06:27:18.880711316 +0000 UTC m=+914.523697247 I0416 06:27:18.912647 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:27:18.91262912 +0000 UTC m=+914.555615091 I0416 06:27:18.938794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:27:18.939241 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:27:18.939232468 +0000 UTC m=+914.582218439 I0416 06:27:18.973843 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:30:22.250798 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:30:22.250853 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-16 06:30:22.250846243 +0000 UTC m=+1097.893832194 I0416 06:30:22.251151 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-16 06:30:22.25114369 +0000 UTC m=+1097.894129781 I0416 06:30:22.267243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:30:22.267419 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 06:30:22.267473 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-16 06:30:22.267464835 +0000 UTC m=+1097.910450776 I0416 06:30:22.549189 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-wdpm2" condition "Approved" to 2026-04-16 06:30:22.549174842 +0000 UTC m=+1098.192160783 I0416 06:30:22.568390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-wdpm2" condition "Ready" to 2026-04-16 06:30:22.568368055 +0000 UTC m=+1098.211354026 I0416 06:30:22.594334 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:30:22.594316318 +0000 UTC m=+1098.237302259 I0416 06:30:22.621872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 06:30:22.622314 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 06:30:22.62230593 +0000 UTC m=+1098.265291871 I0416 06:30:22.643954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"