I0414 09:59:25.131075 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0414 09:59:25.131227 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0414 09:59:25.131324 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0414 09:59:25.137748 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0414 09:59:25.138237 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0414 09:59:25.138265 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0414 09:59:25.138341 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0414 09:59:25.142006 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0414 09:59:25.155178 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0414 09:59:25.159051 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0414 09:59:25.161975 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0414 09:59:25.162006 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0414 09:59:25.162092 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0414 09:59:25.165190 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0414 09:59:25.167652 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0414 09:59:25.174244 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0414 09:59:25.178120 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0414 09:59:25.181858 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0414 09:59:25.183896 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0414 09:59:25.185486 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0414 09:59:25.187626 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0414 09:59:25.189857 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0414 09:59:25.191617 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0414 09:59:25.194642 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0414 09:59:25.200570 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0414 09:59:25.204526 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0414 09:59:25.207194 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0414 09:59:25.208859 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0414 09:59:25.208886 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0414 09:59:25.208894 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0414 09:59:25.208901 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0414 09:59:25.208987 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0414 09:59:25.211574 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0414 09:59:25.212952 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.214663 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.215087 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.215973 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.231863 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.248157 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.261862 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.280039 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.299621 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:25.300273 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0414 09:59:36.436558 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-14 09:59:36.436527717 +0000 UTC m=+11.352045174 I0414 09:59:37.155622 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-14 09:59:37.155608483 +0000 UTC m=+12.071125920 I0414 09:59:37.155907 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 09:59:37.156024 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-14 09:59:37.156009274 +0000 UTC m=+12.071526741 E0414 09:59:37.168795 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 09:59:37.168869 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-14 09:59:37.168862583 +0000 UTC m=+12.084380020 E0414 09:59:37.168892 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 09:59:37.172821 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 09:59:37.172956 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 09:59:37.173014 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-14 09:59:37.173003705 +0000 UTC m=+12.088521152 E0414 09:59:37.181372 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0414 09:59:37.181488 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 09:59:37.181519 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 09:59:37.181578 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0414 09:59:37.207555 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 09:59:37.213472 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rldwb" condition "Approved" to 2026-04-14 09:59:37.213458543 +0000 UTC m=+12.128975970 I0414 09:59:37.227086 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-rldwb" condition "Ready" to 2026-04-14 09:59:37.227073662 +0000 UTC m=+12.142591089 I0414 09:59:37.254158 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 09:59:37.254144547 +0000 UTC m=+12.169661984 I0414 09:59:37.271985 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 09:59:37.272313 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 09:59:37.272304129 +0000 UTC m=+12.187821566 I0414 09:59:37.288088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 09:59:42.182267 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 09:59:42.182245849 +0000 UTC m=+17.097763326 I0414 10:00:02.526486 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:00:02.526577 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-14 10:00:02.526559335 +0000 UTC m=+37.442076802 I0414 10:00:02.526587 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-14 10:00:02.526576045 +0000 UTC m=+37.442093482 I0414 10:00:02.539058 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-14 10:00:02.539045349 +0000 UTC m=+37.454562796 I0414 10:00:02.548315 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:00:02.548399 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:00:02.548427 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-14 10:00:02.548420329 +0000 UTC m=+37.463937776 I0414 10:00:02.681099 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:00:02.691908 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pnjzn" condition "Approved" to 2026-04-14 10:00:02.691897933 +0000 UTC m=+37.607415380 I0414 10:00:02.726776 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-pnjzn" condition "Ready" to 2026-04-14 10:00:02.726749945 +0000 UTC m=+37.642267412 I0414 10:00:02.759974 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:00:02.759957962 +0000 UTC m=+37.675475419 I0414 10:00:02.783064 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:00:02.836467 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:01:55.669532 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:01:55.669605 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-14 10:01:55.669595481 +0000 UTC m=+150.585112948 I0414 10:01:55.669552 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-14 10:01:55.669513609 +0000 UTC m=+150.585031076 E0414 10:01:55.685958 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0414 10:01:55.686040 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-14 10:01:55.686030753 +0000 UTC m=+150.601548210 I0414 10:01:55.686097 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0414 10:01:55.688746 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:01:55.688834 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:01:55.688857 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-14 10:01:55.688851289 +0000 UTC m=+150.604368726 E0414 10:01:55.695738 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0414 10:01:55.695898 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0414 10:01:55.695993 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0414 10:01:55.696080 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0414 10:01:55.705320 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:01:55.705352 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-14 10:01:55.705343253 +0000 UTC m=+150.620860690 I0414 10:01:55.705367 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-14 10:01:55.705357963 +0000 UTC m=+150.620875400 I0414 10:01:55.722163 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:01:55.722333 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-14 10:01:55.722321619 +0000 UTC m=+150.637839076 I0414 10:01:55.911789 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:01:55.939635 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-pwgxt" condition "Approved" to 2026-04-14 10:01:55.939615503 +0000 UTC m=+150.855132990 I0414 10:01:55.957364 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-pwgxt" condition "Ready" to 2026-04-14 10:01:55.9573432 +0000 UTC m=+150.872860657 I0414 10:01:56.068071 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:01:56.076689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-597qr" condition "Approved" to 2026-04-14 10:01:56.076668109 +0000 UTC m=+150.992185576 I0414 10:01:56.105781 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-597qr" condition "Ready" to 2026-04-14 10:01:56.105765691 +0000 UTC m=+151.021283118 I0414 10:01:56.139606 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:01:56.139582621 +0000 UTC m=+151.055100058 I0414 10:01:56.163682 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:01:56.208289 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:02:00.696685 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:02:00.696665965 +0000 UTC m=+155.612183432 I0414 10:02:00.712231 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-pwgxt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:02:00.712217894 +0000 UTC m=+155.627735331 I0414 10:02:00.751918 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:02:00.751902921 +0000 UTC m=+155.667420358 I0414 10:02:00.771908 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:04:31.785095 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-244.nip.io-tls" condition "Ready" to 2026-04-14 10:04:31.785036123 +0000 UTC m=+306.700553590 I0414 10:04:31.785301 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-244.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:04:31.785334 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-244.nip.io-tls" condition "Issuing" to 2026-04-14 10:04:31.785324602 +0000 UTC m=+306.700842059 I0414 10:04:31.803704 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:04:31.804002 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-244.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:04:31.804036 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-244.nip.io-tls" condition "Issuing" to 2026-04-14 10:04:31.804028113 +0000 UTC m=+306.719545580 I0414 10:04:31.969703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:04:31.991796 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-244.nip.io-tls-47ffc" condition "Approved" to 2026-04-14 10:04:31.991778319 +0000 UTC m=+306.907295776 I0414 10:04:32.014594 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-244.nip.io-tls-47ffc" condition "Ready" to 2026-04-14 10:04:32.014570032 +0000 UTC m=+306.930087479 I0414 10:04:32.047260 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-244.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:04:32.047240985 +0000 UTC m=+306.962758442 I0414 10:04:32.072597 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:04:32.072943 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-244.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:04:32.072935042 +0000 UTC m=+306.988452479 I0414 10:04:32.088140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:04:32.089796 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:05:43.173469 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:05:43.173529 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-14 10:05:43.173520653 +0000 UTC m=+378.089038090 I0414 10:05:43.173596 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-14 10:05:43.173571985 +0000 UTC m=+378.089089422 E0414 10:05:43.188381 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 10:05:43.188445 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-14 10:05:43.188433118 +0000 UTC m=+378.103950585 E0414 10:05:43.188515 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0414 10:05:43.192228 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:05:43.192374 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:05:43.192410 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-14 10:05:43.192399316 +0000 UTC m=+378.107916773 E0414 10:05:43.200445 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0414 10:05:43.200615 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 10:05:43.200707 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0414 10:05:43.200810 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0414 10:05:43.231936 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xlz9w" condition "Approved" to 2026-04-14 10:05:43.23192064 +0000 UTC m=+378.147438097 I0414 10:05:43.233309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:05:43.248639 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-xlz9w" condition "Ready" to 2026-04-14 10:05:43.248623383 +0000 UTC m=+378.164140820 I0414 10:05:43.276156 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:05:43.276142 +0000 UTC m=+378.191659437 I0414 10:05:43.292954 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:05:43.293227 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:05:43.293217854 +0000 UTC m=+378.208735291 I0414 10:05:43.314716 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:05:48.201080 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:05:48.201062765 +0000 UTC m=+383.116580222 I0414 10:06:28.739270 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:28.739310 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-14 10:06:28.739302502 +0000 UTC m=+423.654819929 I0414 10:06:28.739637 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-14 10:06:28.73961716 +0000 UTC m=+423.655134627 I0414 10:06:28.739761 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-14 10:06:28.739756234 +0000 UTC m=+423.655273651 I0414 10:06:28.739799 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:28.739849 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-14 10:06:28.739839646 +0000 UTC m=+423.655357083 I0414 10:06:28.739979 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-14 10:06:28.73996778 +0000 UTC m=+423.655485217 I0414 10:06:28.740037 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:28.740058 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-14 10:06:28.740055382 +0000 UTC m=+423.655572799 I0414 10:06:28.777339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:28.777443 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-14 10:06:28.777428706 +0000 UTC m=+423.692946173 I0414 10:06:28.785927 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:28.786515 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-14 10:06:28.78650464 +0000 UTC m=+423.702022077 I0414 10:06:28.788061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:28.794329 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:28.794400 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-14 10:06:28.794380772 +0000 UTC m=+423.709898229 I0414 10:06:28.872989 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:28.918842 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ztvh6" condition "Approved" to 2026-04-14 10:06:28.918824805 +0000 UTC m=+423.834342262 I0414 10:06:28.924689 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:28.939086 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-ztvh6" condition "Ready" to 2026-04-14 10:06:28.939078959 +0000 UTC m=+423.854596396 I0414 10:06:28.958372 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fqbgf" condition "Approved" to 2026-04-14 10:06:28.958363967 +0000 UTC m=+423.873881404 I0414 10:06:28.965477 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:28.965456768 +0000 UTC m=+423.880974205 I0414 10:06:28.974379 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-fqbgf" condition "Ready" to 2026-04-14 10:06:28.974362477 +0000 UTC m=+423.889879914 I0414 10:06:28.995176 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:28.995469 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:28.995456844 +0000 UTC m=+423.910974271 I0414 10:06:29.058429 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:29.086496 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:29.086831 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:29.086820749 +0000 UTC m=+424.002338176 I0414 10:06:29.130203 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:29.130185124 +0000 UTC m=+424.045702561 I0414 10:06:29.330621 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:29.331188 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:29.331178214 +0000 UTC m=+424.246695671 I0414 10:06:29.687739 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-k4m2z" condition "Approved" to 2026-04-14 10:06:29.687606211 +0000 UTC m=+424.603123648 I0414 10:06:29.729413 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:29.782133 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:30.140704 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-k4m2z" condition "Ready" to 2026-04-14 10:06:30.140692904 +0000 UTC m=+425.056210331 I0414 10:06:30.380412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:30.430627 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:30.430608394 +0000 UTC m=+425.346125851 I0414 10:06:30.528399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:30.529049 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:30.529038408 +0000 UTC m=+425.444555865 I0414 10:06:30.758374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:37.049279 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" condition "Ready" to 2026-04-14 10:06:37.049261533 +0000 UTC m=+431.964778970 I0414 10:06:37.049854 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:37.049871 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" condition "Issuing" to 2026-04-14 10:06:37.049863829 +0000 UTC m=+431.965381266 I0414 10:06:37.066900 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-scl8z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:37.066991 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:37.067054 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" condition "Issuing" to 2026-04-14 10:06:37.067045951 +0000 UTC m=+431.982563388 I0414 10:06:37.303198 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-scl8z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:37.323395 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-scl8z-bxnc5" condition "Approved" to 2026-04-14 10:06:37.323372058 +0000 UTC m=+432.238889525 I0414 10:06:37.349350 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-scl8z-bxnc5" condition "Ready" to 2026-04-14 10:06:37.349336265 +0000 UTC m=+432.264853712 I0414 10:06:37.384246 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:37.384228893 +0000 UTC m=+432.299746330 I0414 10:06:37.402541 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-scl8z-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-scl8z-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:58.251421 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:06:58.251476 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-14 10:06:58.251463481 +0000 UTC m=+453.166980948 I0414 10:06:58.251775 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-14 10:06:58.251748309 +0000 UTC m=+453.167265766 I0414 10:06:58.265797 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:58.265935 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-14 10:06:58.26592382 +0000 UTC m=+453.181441257 I0414 10:06:58.682968 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:06:58.721756 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xg8fp" condition "Approved" to 2026-04-14 10:06:58.721734926 +0000 UTC m=+453.637252363 I0414 10:06:58.744842 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xg8fp" condition "Ready" to 2026-04-14 10:06:58.744826877 +0000 UTC m=+453.660344334 I0414 10:06:58.776141 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:06:58.776131848 +0000 UTC m=+453.691649285 I0414 10:06:58.795496 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:10:20.227074 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:10:20.227294 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-14 10:10:20.227278782 +0000 UTC m=+655.142796249 I0414 10:10:20.227267 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-14 10:10:20.22719468 +0000 UTC m=+655.142712137 I0414 10:10:20.245606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:10:20.245880 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-14 10:10:20.245868898 +0000 UTC m=+655.161386375 I0414 10:10:20.471120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:10:20.499817 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-qdm46" condition "Approved" to 2026-04-14 10:10:20.499797532 +0000 UTC m=+655.415314999 I0414 10:10:20.519509 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-qdm46" condition "Ready" to 2026-04-14 10:10:20.519496907 +0000 UTC m=+655.435014344 I0414 10:10:20.549828 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:10:20.549808481 +0000 UTC m=+655.465325938 I0414 10:10:20.573089 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:10:20.573405 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:10:20.573396363 +0000 UTC m=+655.488913790 I0414 10:10:20.581088 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:10:20.601979 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:10:20.602246 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:10:20.602217867 +0000 UTC m=+655.517735284 I0414 10:12:54.619003 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:12:54.619091 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-14 10:12:54.619047243 +0000 UTC m=+809.534564710 I0414 10:12:54.619294 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-14 10:12:54.619270119 +0000 UTC m=+809.534787556 I0414 10:12:54.638841 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:12:54.638945 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:12:54.639008 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-14 10:12:54.639000229 +0000 UTC m=+809.554517696 I0414 10:12:54.908784 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-kjwbv" condition "Approved" to 2026-04-14 10:12:54.908765179 +0000 UTC m=+809.824282616 I0414 10:12:54.939833 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-kjwbv" condition "Ready" to 2026-04-14 10:12:54.939813486 +0000 UTC m=+809.855330963 I0414 10:12:54.966795 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:12:54.966781528 +0000 UTC m=+809.882298965 I0414 10:12:54.991997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:12:54.992391 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:12:54.992383537 +0000 UTC m=+809.907900974 I0414 10:12:55.008327 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:12:55.008692 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:12:55.00868525 +0000 UTC m=+809.924202677 I0414 10:14:02.685621 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-14 10:14:02.68560211 +0000 UTC m=+877.601119567 I0414 10:14:02.686724 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:14:02.686793 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-14 10:14:02.686786211 +0000 UTC m=+877.602303668 I0414 10:14:02.701865 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:14:02.701995 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-14 10:14:02.701983226 +0000 UTC m=+877.617500683 I0414 10:14:02.843619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:14:02.886106 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-jv5mp" condition "Approved" to 2026-04-14 10:14:02.886087146 +0000 UTC m=+877.801604613 I0414 10:14:02.925832 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-jv5mp" condition "Ready" to 2026-04-14 10:14:02.925816966 +0000 UTC m=+877.841334393 I0414 10:14:02.963666 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:14:02.963650515 +0000 UTC m=+877.879167952 I0414 10:14:02.990939 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:17:12.061351 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-14 10:17:12.06073254 +0000 UTC m=+1066.976249977 I0414 10:17:12.061520 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0414 10:17:12.061643 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-14 10:17:12.061615094 +0000 UTC m=+1066.977132561 I0414 10:17:12.076810 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:17:12.076883 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-14 10:17:12.076877703 +0000 UTC m=+1066.992395140 I0414 10:17:12.316720 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0414 10:17:12.343959 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-thbk2" condition "Approved" to 2026-04-14 10:17:12.343944194 +0000 UTC m=+1067.259461631 I0414 10:17:12.360020 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-thbk2" condition "Ready" to 2026-04-14 10:17:12.360010925 +0000 UTC m=+1067.275528362 I0414 10:17:12.384033 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-14 10:17:12.38402157 +0000 UTC m=+1067.299539007 I0414 10:17:12.408285 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"