I0409 02:01:55.493558 1 start.go:75] "cert-manager: starting controller" version="v1.12.10" git-commit="4131d77fe377e78a6fa562af6bdbd31532ddb1ad" I0409 02:01:55.493679 1 controller.go:262] "cert-manager/controller/build-context: configured acme dns01 nameservers" nameservers=["10.96.0.10:53"] W0409 02:01:55.493947 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 02:01:55.499985 1 controller.go:82] "cert-manager/controller: enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" I0409 02:01:55.500584 1 controller.go:156] "cert-manager/controller: starting leader election" I0409 02:01:55.500628 1 controller.go:149] "cert-manager/controller: starting healthz server" address="[::]:9403" I0409 02:01:55.500621 1 controller.go:103] "cert-manager/controller: starting metrics server" address="[::]:9402" I0409 02:01:55.503382 1 leaderelection.go:245] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 02:01:55.515204 1 leaderelection.go:255] successfully acquired lease cert-manager/cert-manager-controller I0409 02:01:55.517844 1 controller.go:226] "cert-manager/controller: starting controller" controller="clusterissuers" I0409 02:01:55.519693 1 controller.go:226] "cert-manager/controller: starting controller" controller="ingress-shim" I0409 02:01:55.524334 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-request-manager" I0409 02:01:55.526955 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-vault" I0409 02:01:55.529637 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-venafi" I0409 02:01:55.532099 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-metrics" I0409 02:01:55.534579 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-readiness" I0409 02:01:55.537171 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-vault" I0409 02:01:55.537279 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-acme" I0409 02:01:55.539232 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-acme" I0409 02:01:55.539249 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-selfsigned" I0409 02:01:55.539374 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-selfsigned" I0409 02:01:55.542322 1 controller.go:226] "cert-manager/controller: starting controller" controller="issuers" I0409 02:01:55.545386 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-approver" I0409 02:01:55.547332 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-trigger" I0409 02:01:55.548946 1 controller.go:226] "cert-manager/controller: starting controller" controller="orders" I0409 02:01:55.550547 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificaterequests-issuer-ca" I0409 02:01:55.552161 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-ca" I0409 02:01:55.552179 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="certificatesigningrequests-issuer-venafi" I0409 02:01:55.552186 1 controller.go:203] "cert-manager/controller: not starting controller as it's disabled" controller="gateway-shim" I0409 02:01:55.552246 1 controller.go:226] "cert-manager/controller: starting controller" controller="challenges" I0409 02:01:55.553900 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-issuing" I0409 02:01:55.555541 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-key-manager" I0409 02:01:55.557388 1 controller.go:226] "cert-manager/controller: starting controller" controller="certificates-revision-manager" I0409 02:02:11.248456 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-09 02:02:11.248433302 +0000 UTC m=+15.783993421 I0409 02:02:11.971410 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:02:11.971475 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 02:02:11.971466183 +0000 UTC m=+16.507026322 I0409 02:02:11.971912 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 02:02:11.971887746 +0000 UTC m=+16.507447915 E0409 02:02:11.982465 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 02:02:11.983079 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-09 02:02:11.982524878 +0000 UTC m=+16.518084997 E0409 02:02:11.983285 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 02:02:11.990914 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:11.990974 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 02:02:11.990967664 +0000 UTC m=+16.526527783 E0409 02:02:11.993968 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" E0409 02:02:11.994306 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 02:02:11.994374 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 02:02:11.994490 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" key="atmosphere" I0409 02:02:12.005184 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:12.020047 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qgpq4" condition "Approved" to 2026-04-09 02:02:12.020037328 +0000 UTC m=+16.555597457 I0409 02:02:12.033543 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-qgpq4" condition "Ready" to 2026-04-09 02:02:12.033525422 +0000 UTC m=+16.569085561 I0409 02:02:12.055230 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:02:12.055217762 +0000 UTC m=+16.590777881 I0409 02:02:12.071195 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:16.994442 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:02:16.994427948 +0000 UTC m=+21.529988087 I0409 02:02:37.796571 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 02:02:37.796494116 +0000 UTC m=+42.332054245 I0409 02:02:37.796990 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:02:37.797044 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 02:02:37.797038899 +0000 UTC m=+42.332599018 I0409 02:02:37.821087 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-09 02:02:37.821058746 +0000 UTC m=+42.356618845 I0409 02:02:37.844071 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:37.844359 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:02:37.844420 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 02:02:37.844412638 +0000 UTC m=+42.379972747 I0409 02:02:37.973128 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:37.977975 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bdpqg" condition "Approved" to 2026-04-09 02:02:37.977962379 +0000 UTC m=+42.513522498 I0409 02:02:38.008771 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-bdpqg" condition "Ready" to 2026-04-09 02:02:38.008757959 +0000 UTC m=+42.544318088 I0409 02:02:38.042785 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:02:38.042768866 +0000 UTC m=+42.578329005 I0409 02:02:38.059380 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:38.059859 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:02:38.05985401 +0000 UTC m=+42.595414119 I0409 02:02:38.072370 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:38.097366 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:38.097683 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:02:38.098266 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:02:38.098256007 +0000 UTC m=+42.633816126 I0409 02:05:10.481252 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-132.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:05:10.481458 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready" to 2026-04-09 02:05:10.48143167 +0000 UTC m=+195.016991789 I0409 02:05:10.481515 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Issuing" to 2026-04-09 02:05:10.48147539 +0000 UTC m=+195.017035529 I0409 02:05:10.510062 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:05:10.510121 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="auth-system/keycloak.199-204-45-132.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:05:10.510138 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Issuing" to 2026-04-09 02:05:10.510133046 +0000 UTC m=+195.045693165 I0409 02:05:10.621542 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:05:10.627003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-132.nip.io-tls-9g99b" condition "Approved" to 2026-04-09 02:05:10.626991137 +0000 UTC m=+195.162551256 I0409 02:05:10.646580 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-132.nip.io-tls-9g99b" condition "Ready" to 2026-04-09 02:05:10.646567598 +0000 UTC m=+195.182127707 I0409 02:05:10.674211 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:05:10.674197735 +0000 UTC m=+195.209757854 I0409 02:05:10.695984 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:05:10.696488 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:05:10.696482221 +0000 UTC m=+195.232042320 I0409 02:05:10.698864 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:05:10.713957 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="auth-system/keycloak.199-204-45-132.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-132.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:05:10.714642 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-132.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:05:10.714633669 +0000 UTC m=+195.250193788 I0409 02:06:05.858775 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:05.858775 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 02:06:05.85875187 +0000 UTC m=+250.394312019 I0409 02:06:05.858808 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 02:06:05.858802631 +0000 UTC m=+250.394362740 E0409 02:06:05.873992 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 02:06:05.874038 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-09 02:06:05.8740286 +0000 UTC m=+250.409588719 E0409 02:06:05.874099 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 02:06:05.875880 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:05.875944 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:05.875967 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 02:06:05.875961806 +0000 UTC m=+250.411521915 E0409 02:06:05.885017 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" E0409 02:06:05.885121 1 setup.go:48] "cert-manager/clusterissuers/setup: error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 02:06:05.885201 1 sync.go:62] "cert-manager/clusterissuers: error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 02:06:05.885275 1 controller.go:167] "cert-manager/clusterissuers: re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" key="kube-prometheus-stack" I0409 02:06:05.913127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-knwzt" condition "Approved" to 2026-04-09 02:06:05.913117222 +0000 UTC m=+250.448677331 I0409 02:06:05.924468 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-knwzt" condition "Ready" to 2026-04-09 02:06:05.924459198 +0000 UTC m=+250.460019317 I0409 02:06:05.939599 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:05.939589476 +0000 UTC m=+250.475149585 I0409 02:06:05.958041 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:05.958322 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:05.958312345 +0000 UTC m=+250.493872464 I0409 02:06:05.967379 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:05.967542 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:05.967537483 +0000 UTC m=+250.503097602 I0409 02:06:10.885292 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:10.885262427 +0000 UTC m=+255.420822566 I0409 02:06:49.084252 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 02:06:49.084206692 +0000 UTC m=+293.619766801 I0409 02:06:49.084419 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:49.084435 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 02:06:49.084432858 +0000 UTC m=+293.619992957 I0409 02:06:49.088215 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 02:06:49.088207949 +0000 UTC m=+293.623768058 I0409 02:06:49.088480 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:49.088495 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 02:06:49.088492707 +0000 UTC m=+293.624052816 I0409 02:06:49.093708 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 02:06:49.093697185 +0000 UTC m=+293.629257294 I0409 02:06:49.093887 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:49.093902 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 02:06:49.093899401 +0000 UTC m=+293.629459510 I0409 02:06:49.136889 1 controller.go:162] "cert-manager/certificates-trigger: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.137043 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:49.137095 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 02:06:49.13708996 +0000 UTC m=+293.672650069 I0409 02:06:49.137785 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.137855 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 02:06:49.137848279 +0000 UTC m=+293.673408388 I0409 02:06:49.138083 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.138111 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 02:06:49.138108557 +0000 UTC m=+293.673668666 I0409 02:06:49.319176 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.344342 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-sbzvq" condition "Approved" to 2026-04-09 02:06:49.344331284 +0000 UTC m=+293.879891393 I0409 02:06:49.365823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-sbzvq" condition "Ready" to 2026-04-09 02:06:49.365813985 +0000 UTC m=+293.901374084 I0409 02:06:49.411875 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:49.411865071 +0000 UTC m=+293.947425190 I0409 02:06:49.440790 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.444048 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.448344 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.448501 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6hvhw" condition "Approved" to 2026-04-09 02:06:49.448491695 +0000 UTC m=+293.984051804 I0409 02:06:49.448934 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:49.448926557 +0000 UTC m=+293.984486676 I0409 02:06:49.467443 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-6hvhw" condition "Ready" to 2026-04-09 02:06:49.46743499 +0000 UTC m=+294.002995089 I0409 02:06:49.482415 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.563456 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:49.563447244 +0000 UTC m=+294.099007353 I0409 02:06:49.663807 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:49.664484 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:49.664476732 +0000 UTC m=+294.200036851 I0409 02:06:50.012604 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:50.122043 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-vv2gl" condition "Approved" to 2026-04-09 02:06:50.122014431 +0000 UTC m=+294.657574550 I0409 02:06:50.426944 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-vv2gl" condition "Ready" to 2026-04-09 02:06:50.426934506 +0000 UTC m=+294.962494615 E0409 02:06:50.607043 1 controller.go:167] "cert-manager/certificates-key-manager: re-queuing item due to error processing" err="secrets \"grafana-tls-lztz2\" not found" key="monitoring/grafana-tls" I0409 02:06:50.953162 1 issuing_controller.go:324] "cert-manager/certificates-issuing: next private key does not match CSR public key, waiting for requestmanager controller" key="monitoring/grafana-tls" resource_name="grafana-tls" resource_namespace="monitoring" resource_kind="Certificate" resource_version="v1" resource_name="grafana-tls-vv2gl" resource_namespace="monitoring" resource_kind="CertificateRequest" resource_version="v1" resource_name="grafana-tls-jf6jv" resource_namespace="monitoring" resource_kind="Secret" resource_version="v1" I0409 02:06:50.974306 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-7sfkq" condition "Approved" to 2026-04-09 02:06:50.974290252 +0000 UTC m=+295.509850371 I0409 02:06:51.326097 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-7sfkq" condition "Ready" to 2026-04-09 02:06:51.326084628 +0000 UTC m=+295.861644757 I0409 02:06:51.513574 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:51.51355931 +0000 UTC m=+296.049119429 I0409 02:06:51.617047 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:51.617747 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:51.617740647 +0000 UTC m=+296.153300766 I0409 02:06:51.811037 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:56.878488 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:06:56.878515 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" condition "Issuing" to 2026-04-09 02:06:56.878506754 +0000 UTC m=+301.414066863 I0409 02:06:56.879881 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" condition "Ready" to 2026-04-09 02:06:56.879858009 +0000 UTC m=+301.415418158 I0409 02:06:56.900117 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k6slq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:56.900179 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" condition "Ready" to 2026-04-09 02:06:56.900172142 +0000 UTC m=+301.435732261 I0409 02:06:57.040885 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k6slq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:06:57.076729 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-k6slq-fcx9x" condition "Approved" to 2026-04-09 02:06:57.076714731 +0000 UTC m=+301.612274850 I0409 02:06:57.133382 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-k6slq-fcx9x" condition "Ready" to 2026-04-09 02:06:57.133371544 +0000 UTC m=+301.668931653 I0409 02:06:57.238454 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:06:57.238440528 +0000 UTC m=+301.774000637 I0409 02:06:57.328435 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-k6slq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-k6slq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:07:10.538314 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 02:07:10.538279451 +0000 UTC m=+315.073839600 I0409 02:07:10.538434 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:07:10.538525 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 02:07:10.538459945 +0000 UTC m=+315.074020084 I0409 02:07:10.554837 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:07:10.554928 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 02:07:10.554919184 +0000 UTC m=+315.090479303 I0409 02:07:10.818115 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:07:10.892837 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-8425k" condition "Approved" to 2026-04-09 02:07:10.892822027 +0000 UTC m=+315.428382136 I0409 02:07:10.918882 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-8425k" condition "Ready" to 2026-04-09 02:07:10.918869607 +0000 UTC m=+315.454429726 I0409 02:07:10.952158 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:07:10.952142902 +0000 UTC m=+315.487703021 I0409 02:07:10.981638 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:10:12.469167 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 02:10:12.469112858 +0000 UTC m=+497.004672977 I0409 02:10:12.469514 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:10:12.469557 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 02:10:12.469553445 +0000 UTC m=+497.005113654 I0409 02:10:12.489767 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:10:12.489925 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 02:10:12.489914428 +0000 UTC m=+497.025474537 I0409 02:10:12.890951 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:10:12.925068 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-tnm88" condition "Approved" to 2026-04-09 02:10:12.925054688 +0000 UTC m=+497.460614797 I0409 02:10:12.951372 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-tnm88" condition "Ready" to 2026-04-09 02:10:12.951358774 +0000 UTC m=+497.486918893 I0409 02:10:12.982185 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:10:12.982164784 +0000 UTC m=+497.517724903 I0409 02:10:13.008571 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:10:52.772364 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-09 02:10:52.772316138 +0000 UTC m=+537.307876257 I0409 02:10:52.772670 1 trigger_controller.go:194] "cert-manager/certificates-trigger: Certificate must be re-issued" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 02:10:52.772862 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-09 02:10:52.772853424 +0000 UTC m=+537.308413563 I0409 02:10:52.790582 1 controller.go:162] "cert-manager/certificates-readiness: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:10:52.790661 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-09 02:10:52.790653017 +0000 UTC m=+537.326213136 I0409 02:10:52.939296 1 controller.go:162] "cert-manager/certificates-key-manager: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 02:10:52.969932 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xbvm6" condition "Approved" to 2026-04-09 02:10:52.969915667 +0000 UTC m=+537.505475766 I0409 02:10:52.996545 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-xbvm6" condition "Ready" to 2026-04-09 02:10:52.996531985 +0000 UTC m=+537.532092094 I0409 02:10:53.031528 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 02:10:53.031513431 +0000 UTC m=+537.567073550 I0409 02:10:53.056425 1 controller.go:162] "cert-manager/certificates-issuing: re-queuing item due to optimistic locking on resource" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"