I0409 17:37:35.292003 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0409 17:37:35.292196 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0409 17:37:35.292340 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0409 17:37:35.296844 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0409 17:37:35.297305 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0409 17:37:35.297509 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0409 17:37:35.297976 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0409 17:37:35.300663 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0409 17:37:35.319254 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0409 17:37:35.326678 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0409 17:37:35.330197 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0409 17:37:35.330235 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0409 17:37:35.330271 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0409 17:37:35.333129 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0409 17:37:35.336190 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0409 17:37:35.338725 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0409 17:37:35.341233 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0409 17:37:35.345722 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0409 17:37:35.345792 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0409 17:37:35.346495 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0409 17:37:35.351091 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0409 17:37:35.353684 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0409 17:37:35.356469 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0409 17:37:35.360402 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0409 17:37:35.364478 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0409 17:37:35.364526 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0409 17:37:35.364555 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0409 17:37:35.368928 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0409 17:37:35.373175 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0409 17:37:35.379777 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0409 17:37:35.384983 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0409 17:37:35.387712 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0409 17:37:35.390380 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0409 17:37:35.393139 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.394229 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.395680 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.443301 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.449147 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.471328 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.490500 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.501022 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.508731 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:35.531637 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0409 17:37:49.189028 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-09 17:37:49.189011726 +0000 UTC m=+13.935829492 I0409 17:37:49.978148 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:37:49.978207 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-09 17:37:49.978194693 +0000 UTC m=+14.725012499 I0409 17:37:49.979464 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 17:37:49.97945569 +0000 UTC m=+14.726273496 E0409 17:37:49.994162 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:37:49.994278 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-09 17:37:49.994266832 +0000 UTC m=+14.741084628 E0409 17:37:49.994317 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:37:50.000115 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:37:50.000339 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-09 17:37:50.000328604 +0000 UTC m=+14.747146390 E0409 17:37:50.011779 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0409 17:37:50.012081 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:37:50.012183 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:37:50.012236 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0409 17:37:50.018057 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:37:50.047123 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m8p6b" condition "Approved" to 2026-04-09 17:37:50.047105398 +0000 UTC m=+14.793923204 I0409 17:37:50.065961 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m8p6b" condition "Ready" to 2026-04-09 17:37:50.065942395 +0000 UTC m=+14.812760201 I0409 17:37:50.090721 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:37:50.090697441 +0000 UTC m=+14.837515267 I0409 17:37:50.110226 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:37:50.110706 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:37:50.110694881 +0000 UTC m=+14.857512687 I0409 17:37:50.126986 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:37:50.127521 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:37:50.12750902 +0000 UTC m=+14.874326826 I0409 17:37:55.013099 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:37:55.013081365 +0000 UTC m=+19.759899181 I0409 17:38:16.717456 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:38:16.717452 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 17:38:16.717431365 +0000 UTC m=+41.464249171 I0409 17:38:16.717616 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-09 17:38:16.71760398 +0000 UTC m=+41.464421806 I0409 17:38:16.730639 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-09 17:38:16.730623762 +0000 UTC m=+41.477441548 I0409 17:38:16.736808 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:16.736899 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-09 17:38:16.73689119 +0000 UTC m=+41.483708986 I0409 17:38:16.834449 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:16.871049 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gbzqf" condition "Approved" to 2026-04-09 17:38:16.871028534 +0000 UTC m=+41.617846340 I0409 17:38:16.908904 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-gbzqf" condition "Ready" to 2026-04-09 17:38:16.908883734 +0000 UTC m=+41.655701540 I0409 17:38:16.943868 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:16.943842 +0000 UTC m=+41.690659816 I0409 17:38:16.973433 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:16.974005 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:16.97399168 +0000 UTC m=+41.720809496 I0409 17:38:16.999662 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:38:17.000110 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:38:17.000097604 +0000 UTC m=+41.746915410 I0409 17:38:17.000935 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:04.935895 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:40:04.935968 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-09 17:40:04.935939635 +0000 UTC m=+149.682757431 I0409 17:40:04.936008 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-09 17:40:04.935990966 +0000 UTC m=+149.682808792 E0409 17:40:04.954277 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 17:40:04.954347 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-09 17:40:04.954336943 +0000 UTC m=+149.701154729 I0409 17:40:04.954372 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 17:40:04.957842 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:04.957930 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-09 17:40:04.957924201 +0000 UTC m=+149.704741987 E0409 17:40:04.974742 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0409 17:40:04.974887 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0409 17:40:04.974920 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0409 17:40:04.974970 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0409 17:40:04.979871 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:40:04.979900 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 17:40:04.979892565 +0000 UTC m=+149.726710351 I0409 17:40:04.980176 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-09 17:40:04.980172093 +0000 UTC m=+149.726989879 I0409 17:40:04.998349 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:04.998622 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:40:04.998990 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-09 17:40:04.998778157 +0000 UTC m=+149.745595973 I0409 17:40:05.123527 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:05.160526 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-7qgp5" condition "Approved" to 2026-04-09 17:40:05.1605084 +0000 UTC m=+149.907326176 I0409 17:40:05.192201 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-7qgp5" condition "Ready" to 2026-04-09 17:40:05.192184698 +0000 UTC m=+149.939002484 I0409 17:40:05.224548 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:05.224525415 +0000 UTC m=+149.971343231 I0409 17:40:05.243561 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:05.243939 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:05.243930971 +0000 UTC m=+149.990748757 I0409 17:40:05.261892 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:05.266426 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:05.390914 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-5wp9l" condition "Approved" to 2026-04-09 17:40:05.390898223 +0000 UTC m=+150.137715999 I0409 17:40:05.409895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-5wp9l" condition "Ready" to 2026-04-09 17:40:05.409878507 +0000 UTC m=+150.156696283 I0409 17:40:09.975894 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:09.975881434 +0000 UTC m=+154.722699210 I0409 17:40:09.992747 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-5wp9l" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:09.992735271 +0000 UTC m=+154.739553057 I0409 17:40:10.025576 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:10.02556347 +0000 UTC m=+154.772381256 I0409 17:40:10.050470 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:10.051470 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:10.051458802 +0000 UTC m=+154.798276588 I0409 17:40:10.056834 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:10.078399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:40:10.078788 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:40:10.078775432 +0000 UTC m=+154.825593218 I0409 17:40:10.078826 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:53.207682 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Ready" to 2026-04-09 17:42:53.207642215 +0000 UTC m=+317.954460021 I0409 17:42:53.207992 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-44.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.208092 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Issuing" to 2026-04-09 17:42:53.208057997 +0000 UTC m=+317.954875813 I0409 17:42:53.223404 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:42:53.223473 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-44.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:42:53.223489 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Issuing" to 2026-04-09 17:42:53.223482736 +0000 UTC m=+317.970300522 I0409 17:42:53.582057 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-44.nip.io-tls-kw4q5" condition "Approved" to 2026-04-09 17:42:53.582039701 +0000 UTC m=+318.328857487 I0409 17:42:53.602713 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-44.nip.io-tls-kw4q5" condition "Ready" to 2026-04-09 17:42:53.602695989 +0000 UTC m=+318.349513805 I0409 17:42:53.631378 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-44.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:42:53.63136435 +0000 UTC m=+318.378182136 I0409 17:42:53.653419 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-19-213-44.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-44.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:05.122839 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:05.122859 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-09 17:44:05.122837394 +0000 UTC m=+389.869655210 I0409 17:44:05.122906 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 17:44:05.122895476 +0000 UTC m=+389.869713282 E0409 17:44:05.135384 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:44:05.135440 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-09 17:44:05.135431788 +0000 UTC m=+389.882249574 E0409 17:44:05.135503 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0409 17:44:05.143949 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:05.144143 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:05.144379 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-09 17:44:05.144365029 +0000 UTC m=+389.891182865 E0409 17:44:05.145622 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0409 17:44:05.145769 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:44:05.145814 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0409 17:44:05.145924 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0409 17:44:05.186877 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mtwr6" condition "Approved" to 2026-04-09 17:44:05.18686073 +0000 UTC m=+389.933678536 I0409 17:44:05.187519 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:05.200102 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-mtwr6" condition "Ready" to 2026-04-09 17:44:05.200089972 +0000 UTC m=+389.946907758 I0409 17:44:05.221616 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:05.221602595 +0000 UTC m=+389.968420391 I0409 17:44:05.240399 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:05.240788 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:05.240778998 +0000 UTC m=+389.987596784 I0409 17:44:05.262021 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:10.146663 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:10.14664826 +0000 UTC m=+394.893466046 I0409 17:44:50.615555 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-09 17:44:50.615506108 +0000 UTC m=+435.362323894 I0409 17:44:50.615565 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:50.615689 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 17:44:50.615685104 +0000 UTC m=+435.362502890 I0409 17:44:50.626249 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-09 17:44:50.626238063 +0000 UTC m=+435.373055839 I0409 17:44:50.626537 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:50.626566 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-09 17:44:50.626544982 +0000 UTC m=+435.373362778 I0409 17:44:50.626758 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:50.626833 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 17:44:50.626826171 +0000 UTC m=+435.373643967 I0409 17:44:50.626622 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 17:44:50.626614574 +0000 UTC m=+435.373432350 I0409 17:44:50.664669 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:50.664734 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:50.664758 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-09 17:44:50.664751899 +0000 UTC m=+435.411569675 I0409 17:44:50.665644 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:50.665840 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:50.665875 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-09 17:44:50.66586499 +0000 UTC m=+435.412682806 I0409 17:44:50.668073 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:50.668209 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:50.668295 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-09 17:44:50.66828629 +0000 UTC m=+435.415104096 I0409 17:44:50.896035 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xzftj" condition "Approved" to 2026-04-09 17:44:50.89602037 +0000 UTC m=+435.642838166 I0409 17:44:50.938726 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-xzftj" condition "Ready" to 2026-04-09 17:44:50.938710275 +0000 UTC m=+435.685528071 I0409 17:44:50.969120 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:50.976576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wnfmr" condition "Approved" to 2026-04-09 17:44:50.976562431 +0000 UTC m=+435.723380217 I0409 17:44:50.981119 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:50.981108601 +0000 UTC m=+435.727926377 I0409 17:44:50.995110 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-wnfmr" condition "Ready" to 2026-04-09 17:44:50.995097159 +0000 UTC m=+435.741914945 I0409 17:44:51.003943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:51.004449 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:51.004439465 +0000 UTC m=+435.751257251 I0409 17:44:51.028976 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:51.028955872 +0000 UTC m=+435.775773658 I0409 17:44:51.029305 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:51.065893 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:51.066246 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:51.066240813 +0000 UTC m=+435.813058579 I0409 17:44:51.501911 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:51.550508 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:51.599427 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:51.655334 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-dfndz" condition "Approved" to 2026-04-09 17:44:51.655319665 +0000 UTC m=+436.402137451 I0409 17:44:51.915515 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-dfndz" condition "Ready" to 2026-04-09 17:44:51.915501208 +0000 UTC m=+436.662318984 I0409 17:44:52.249885 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:52.249864081 +0000 UTC m=+436.996681887 I0409 17:44:52.349910 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:52.350380 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:52.350368951 +0000 UTC m=+437.097186767 I0409 17:44:52.600375 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:52.650316 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:58.368771 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" condition "Ready" to 2026-04-09 17:44:58.368746995 +0000 UTC m=+443.115564801 I0409 17:44:58.369223 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:44:58.369250 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" condition "Issuing" to 2026-04-09 17:44:58.369243899 +0000 UTC m=+443.116061675 I0409 17:44:58.390768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:58.390885 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" condition "Ready" to 2026-04-09 17:44:58.390876135 +0000 UTC m=+443.137693911 I0409 17:44:58.515402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:44:58.736905 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-t5lrz-p2lg7" condition "Approved" to 2026-04-09 17:44:58.73688892 +0000 UTC m=+443.483706696 I0409 17:44:58.798058 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-t5lrz-p2lg7" condition "Ready" to 2026-04-09 17:44:58.7980458 +0000 UTC m=+443.544863576 I0409 17:44:58.891318 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:44:58.891305454 +0000 UTC m=+443.638123230 I0409 17:44:58.911729 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-t5lrz-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:45:20.585027 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-09 17:45:20.585008707 +0000 UTC m=+465.331826513 I0409 17:45:20.585181 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:45:20.585226 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 17:45:20.585216273 +0000 UTC m=+465.332034049 I0409 17:45:20.602816 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:45:20.602940 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:45:20.602957 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-09 17:45:20.602950869 +0000 UTC m=+465.349768645 I0409 17:45:21.226099 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-thr8j" condition "Approved" to 2026-04-09 17:45:21.226079876 +0000 UTC m=+465.972897662 I0409 17:45:21.251459 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-thr8j" condition "Ready" to 2026-04-09 17:45:21.25144444 +0000 UTC m=+465.998262226 I0409 17:45:21.284256 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:45:21.284238296 +0000 UTC m=+466.031056082 I0409 17:45:21.305053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:45:21.305603 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:45:21.305594205 +0000 UTC m=+466.052411991 I0409 17:45:21.322529 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:45:21.333867 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:45:21.334164 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:45:21.33415464 +0000 UTC m=+466.080972416 I0409 17:48:39.001713 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-09 17:48:39.00165378 +0000 UTC m=+663.748471616 I0409 17:48:39.002151 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:48:39.002196 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 17:48:39.002185385 +0000 UTC m=+663.749003221 I0409 17:48:39.018687 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:48:39.018761 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:48:39.018783 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-09 17:48:39.018777653 +0000 UTC m=+663.765595449 I0409 17:48:39.184853 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:48:39.194168 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-2vsg9" condition "Approved" to 2026-04-09 17:48:39.194157276 +0000 UTC m=+663.940975062 I0409 17:48:39.212662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-2vsg9" condition "Ready" to 2026-04-09 17:48:39.212650228 +0000 UTC m=+663.959468014 I0409 17:48:39.243956 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:48:39.243940238 +0000 UTC m=+663.990758034 I0409 17:48:39.263619 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:48:39.263993 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:48:39.263983304 +0000 UTC m=+664.010801090 I0409 17:48:39.281450 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:48:39.281795 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:48:39.281786056 +0000 UTC m=+664.028603842 I0409 17:51:06.265293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:51:06.265336 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-09 17:51:06.265327104 +0000 UTC m=+811.012144910 I0409 17:51:06.266002 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 17:51:06.265992283 +0000 UTC m=+811.012810089 I0409 17:51:06.289888 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:51:06.289975 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-09 17:51:06.289969289 +0000 UTC m=+811.036787075 I0409 17:51:06.576809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:51:06.615143 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-r45m7" condition "Approved" to 2026-04-09 17:51:06.615126906 +0000 UTC m=+811.361944702 I0409 17:51:06.637106 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-r45m7" condition "Ready" to 2026-04-09 17:51:06.637094765 +0000 UTC m=+811.383912551 I0409 17:51:06.665565 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:51:06.66555191 +0000 UTC m=+811.412369696 I0409 17:51:06.691103 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:52:15.394052 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-09 17:52:15.394017639 +0000 UTC m=+880.140835445 I0409 17:52:15.394076 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:52:15.394128 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 17:52:15.394122362 +0000 UTC m=+880.140940138 I0409 17:52:15.415476 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:52:15.415600 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:52:15.415633 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-09 17:52:15.415624588 +0000 UTC m=+880.162442394 I0409 17:52:15.996697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-q4p9v" condition "Approved" to 2026-04-09 17:52:15.99668124 +0000 UTC m=+880.743499016 I0409 17:52:16.021424 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-q4p9v" condition "Ready" to 2026-04-09 17:52:16.021408988 +0000 UTC m=+880.768226794 I0409 17:52:16.052744 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:52:16.052728314 +0000 UTC m=+880.799546130 I0409 17:52:16.098116 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:55:19.713785 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-09 17:55:19.713739214 +0000 UTC m=+1064.460557040 I0409 17:55:19.714044 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:55:19.714150 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 17:55:19.714138975 +0000 UTC m=+1064.460956761 I0409 17:55:19.734723 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0409 17:55:19.734825 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0409 17:55:19.734846 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-09 17:55:19.73484012 +0000 UTC m=+1064.481657906 I0409 17:55:20.089613 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-8wrnw" condition "Approved" to 2026-04-09 17:55:20.089602528 +0000 UTC m=+1064.836420314 I0409 17:55:20.114895 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-8wrnw" condition "Ready" to 2026-04-09 17:55:20.114879314 +0000 UTC m=+1064.861697130 I0409 17:55:20.143623 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-09 17:55:20.14360933 +0000 UTC m=+1064.890427106 I0409 17:55:20.177665 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"