I0411 02:13:46.469233 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0411 02:13:46.469438 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0411 02:13:46.469662 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0411 02:13:46.476555 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0411 02:13:46.477198 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0411 02:13:46.477276 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0411 02:13:46.477289 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0411 02:13:46.480956 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0411 02:13:46.495957 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0411 02:13:46.496200 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0411 02:13:46.500750 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0411 02:13:46.500937 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0411 02:13:46.503746 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0411 02:13:46.509378 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0411 02:13:46.512133 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0411 02:13:46.514321 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0411 02:13:46.516667 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0411 02:13:46.519319 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0411 02:13:46.521605 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0411 02:13:46.526043 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0411 02:13:46.526113 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0411 02:13:46.526305 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0411 02:13:46.530540 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0411 02:13:46.532978 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0411 02:13:46.535299 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0411 02:13:46.538615 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0411 02:13:46.540124 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0411 02:13:46.540150 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0411 02:13:46.540275 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0411 02:13:46.542900 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0411 02:13:46.545074 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0411 02:13:46.547772 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0411 02:13:46.554466 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0411 02:13:46.556227 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.557569 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.558030 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.577629 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.591063 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.611205 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.629451 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.636172 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.643355 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:13:46.657495 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0411 02:14:05.488744 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-11 02:14:05.488726265 +0000 UTC m=+19.050240905 I0411 02:14:06.193445 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-11 02:14:06.193430137 +0000 UTC m=+19.754944777 I0411 02:14:06.193464 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:14:06.193665 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-11 02:14:06.193652274 +0000 UTC m=+19.755166914 I0411 02:14:06.207991 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:06.208068 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-11 02:14:06.208059679 +0000 UTC m=+19.769574309 E0411 02:14:06.209386 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0411 02:14:06.209482 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-11 02:14:06.209471534 +0000 UTC m=+19.770986174 E0411 02:14:06.209521 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 02:14:06.222926 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0411 02:14:06.223156 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 02:14:06.223281 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0411 02:14:06.223372 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0411 02:14:06.225537 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:06.250943 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qrgf8" condition "Approved" to 2026-04-11 02:14:06.250924475 +0000 UTC m=+19.812439105 I0411 02:14:06.263858 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qrgf8" condition "Ready" to 2026-04-11 02:14:06.263842703 +0000 UTC m=+19.825357323 I0411 02:14:06.288760 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:06.288742681 +0000 UTC m=+19.850257291 I0411 02:14:06.307536 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:06.308000 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:06.307990279 +0000 UTC m=+19.869504909 I0411 02:14:06.311072 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:06.321303 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:06.321618 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:06.32160654 +0000 UTC m=+19.883121150 I0411 02:14:06.325007 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:11.223611 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:11.223593072 +0000 UTC m=+24.785107712 I0411 02:14:35.755508 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-11 02:14:35.755453076 +0000 UTC m=+49.316967686 I0411 02:14:35.755699 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:14:35.755811 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-11 02:14:35.755776266 +0000 UTC m=+49.317290906 I0411 02:14:35.766802 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-11 02:14:35.766789265 +0000 UTC m=+49.328303875 I0411 02:14:35.779983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:35.780060 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:14:35.780079 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-11 02:14:35.780073314 +0000 UTC m=+49.341587924 I0411 02:14:36.052571 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lhmgv" condition "Approved" to 2026-04-11 02:14:36.052558001 +0000 UTC m=+49.614072611 I0411 02:14:36.081032 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-lhmgv" condition "Ready" to 2026-04-11 02:14:36.081020741 +0000 UTC m=+49.642535351 I0411 02:14:36.113636 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:36.113621061 +0000 UTC m=+49.675135671 I0411 02:14:36.137946 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:36.138251 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:36.13824357 +0000 UTC m=+49.699758180 I0411 02:14:36.146442 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:36.155525 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:36.156045 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:14:36.156428 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:14:36.156419945 +0000 UTC m=+49.717934575 I0411 02:16:52.806858 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-11 02:16:52.806836304 +0000 UTC m=+186.368350904 I0411 02:16:52.807012 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:16:52.807067 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-11 02:16:52.807053141 +0000 UTC m=+186.368567771 E0411 02:16:52.823848 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0411 02:16:52.824099 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-11 02:16:52.824089827 +0000 UTC m=+186.385604437 I0411 02:16:52.824161 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0411 02:16:52.825080 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:52.825181 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-11 02:16:52.82517071 +0000 UTC m=+186.386685320 E0411 02:16:52.835088 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0411 02:16:52.835787 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0411 02:16:52.835905 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0411 02:16:52.836057 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0411 02:16:52.839948 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:16:52.839989 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-11 02:16:52.839982878 +0000 UTC m=+186.401497508 I0411 02:16:52.839941 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-11 02:16:52.839926406 +0000 UTC m=+186.401441026 I0411 02:16:52.854215 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:52.854290 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-11 02:16:52.85428276 +0000 UTC m=+186.415797390 I0411 02:16:53.193835 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:53.225560 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-2tb9x" condition "Approved" to 2026-04-11 02:16:53.225532597 +0000 UTC m=+186.787047227 I0411 02:16:53.251686 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-2tb9x" condition "Ready" to 2026-04-11 02:16:53.251670764 +0000 UTC m=+186.813185374 I0411 02:16:53.363643 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:53.393229 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zklpg" condition "Approved" to 2026-04-11 02:16:53.393213006 +0000 UTC m=+186.954727646 I0411 02:16:53.418927 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-zklpg" condition "Ready" to 2026-04-11 02:16:53.4189102 +0000 UTC m=+186.980424830 I0411 02:16:53.445970 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:53.445953015 +0000 UTC m=+187.007467655 I0411 02:16:53.468093 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:53.468361 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:53.468354047 +0000 UTC m=+187.029868657 I0411 02:16:53.479233 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:53.483298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:53.483617 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:53.483606518 +0000 UTC m=+187.045121128 I0411 02:16:57.837175 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:57.83716095 +0000 UTC m=+191.398675580 I0411 02:16:57.852898 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-2tb9x" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:57.852881516 +0000 UTC m=+191.414396236 I0411 02:16:57.884533 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:57.884507303 +0000 UTC m=+191.446021933 I0411 02:16:57.903891 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:57.904160 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:57.904150249 +0000 UTC m=+191.465664859 I0411 02:16:57.912012 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:57.924593 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:57.924634 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:16:57.924913 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:16:57.92490512 +0000 UTC m=+191.486419730 I0411 02:19:30.574722 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready" to 2026-04-11 02:19:30.574672963 +0000 UTC m=+344.136187643 I0411 02:19:30.575387 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-229.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:19:30.575622 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Issuing" to 2026-04-11 02:19:30.57552595 +0000 UTC m=+344.137040640 I0411 02:19:30.596169 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:19:30.596286 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-229.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0411 02:19:30.596329 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Issuing" to 2026-04-11 02:19:30.596313422 +0000 UTC m=+344.157828072 I0411 02:19:30.801440 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:19:30.808805 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-229.nip.io-tls-2mwxk" condition "Approved" to 2026-04-11 02:19:30.808788308 +0000 UTC m=+344.370302938 I0411 02:19:30.828058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-229.nip.io-tls-2mwxk" condition "Ready" to 2026-04-11 02:19:30.828047353 +0000 UTC m=+344.389561963 I0411 02:19:30.851334 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:19:30.851315893 +0000 UTC m=+344.412830533 I0411 02:19:30.877514 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:19:30.878106 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:19:30.878090873 +0000 UTC m=+344.439605503 I0411 02:19:30.894907 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-229.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-229.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0411 02:19:30.895509 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-229.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-11 02:19:30.895499349 +0000 UTC m=+344.457013989 E0411 02:20:58.951725 1 leaderelection.go:332] error retrieving resource lock cert-manager/cert-manager-controller: etcdserver: request timed out