I0509 16:49:32.807044 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0509 16:49:32.807175 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0509 16:49:32.807282 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0509 16:49:32.810935 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0509 16:49:32.812235 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0509 16:49:32.813702 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0509 16:49:32.813725 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0509 16:49:32.817449 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0509 16:49:32.832478 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0509 16:49:32.832676 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0509 16:49:32.837028 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0509 16:49:32.840085 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0509 16:49:32.841599 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0509 16:49:32.846560 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0509 16:49:32.849968 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0509 16:49:32.853046 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0509 16:49:32.855853 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0509 16:49:32.858651 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0509 16:49:32.860826 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0509 16:49:32.862654 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0509 16:49:32.866843 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0509 16:49:32.869475 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0509 16:49:32.871308 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0509 16:49:32.871350 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0509 16:49:32.873139 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0509 16:49:32.873162 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0509 16:49:32.873171 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0509 16:49:32.873177 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0509 16:49:32.873281 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0509 16:49:32.875137 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0509 16:49:32.876986 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0509 16:49:32.878964 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0509 16:49:32.881015 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0509 16:49:32.885480 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.886155 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.885489 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.887451 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.887581 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.888474 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.888649 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.889068 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.889950 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:32.979044 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0509 16:49:43.898125 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-09 16:49:43.898109745 +0000 UTC m=+11.133831170 I0509 16:49:44.604078 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-09 16:49:44.604061106 +0000 UTC m=+11.839782541 I0509 16:49:44.604253 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:49:44.604348 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-09 16:49:44.604336143 +0000 UTC m=+11.840057578 I0509 16:49:44.623151 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" E0509 16:49:44.623272 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 16:49:44.623373 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-09 16:49:44.623363269 +0000 UTC m=+11.859084694 E0509 16:49:44.623404 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 16:49:44.623459 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-09 16:49:44.623322729 +0000 UTC m=+11.859044194 E0509 16:49:44.636924 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0509 16:49:44.637106 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 16:49:44.637200 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 16:49:44.637272 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0509 16:49:44.647305 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:49:44.669616 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m99sh" condition "Approved" to 2026-05-09 16:49:44.669600165 +0000 UTC m=+11.905321600 I0509 16:49:44.684095 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m99sh" condition "Ready" to 2026-05-09 16:49:44.684078303 +0000 UTC m=+11.919799738 I0509 16:49:44.706651 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:49:44.706610896 +0000 UTC m=+11.942332361 I0509 16:49:44.728742 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:49:44.730820 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:49:44.730809654 +0000 UTC m=+11.966531089 I0509 16:49:44.735143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:49:44.750238 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:49:44.750735 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:49:44.750720041 +0000 UTC m=+11.986441506 I0509 16:49:49.642844 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:49:49.64231876 +0000 UTC m=+16.878040195 I0509 16:50:10.516885 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:50:10.516948 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-09 16:50:10.516942193 +0000 UTC m=+37.752663608 I0509 16:50:10.517013 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-09 16:50:10.516913623 +0000 UTC m=+37.752635058 I0509 16:50:10.534098 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-09 16:50:10.534083285 +0000 UTC m=+37.769804760 I0509 16:50:10.557053 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:50:10.561127 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-09 16:50:10.561104703 +0000 UTC m=+37.796826148 I0509 16:50:10.780017 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:50:10.817518 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-75n9g" condition "Approved" to 2026-05-09 16:50:10.817503252 +0000 UTC m=+38.053224667 I0509 16:50:10.854840 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-75n9g" condition "Ready" to 2026-05-09 16:50:10.85482451 +0000 UTC m=+38.090545945 I0509 16:50:10.891442 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:50:10.891426641 +0000 UTC m=+38.127148086 I0509 16:50:10.933905 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:54:35.018906 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-33.nip.io-tls" condition "Ready" to 2026-05-09 16:54:35.018885132 +0000 UTC m=+302.254606567 I0509 16:54:35.019204 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-33.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:54:35.019223 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-33.nip.io-tls" condition "Issuing" to 2026-05-09 16:54:35.019218634 +0000 UTC m=+302.254940069 I0509 16:54:35.034926 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-33.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-33.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:54:35.035010 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-33.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:54:35.035037 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-33.nip.io-tls" condition "Issuing" to 2026-05-09 16:54:35.035028849 +0000 UTC m=+302.270750304 I0509 16:54:35.485932 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-33.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-33.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:54:35.526674 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-33.nip.io-tls-dq7zj" condition "Approved" to 2026-05-09 16:54:35.526657009 +0000 UTC m=+302.762378474 I0509 16:54:35.579120 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-33.nip.io-tls-dq7zj" condition "Ready" to 2026-05-09 16:54:35.579109212 +0000 UTC m=+302.814830657 I0509 16:54:35.630453 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-33.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:54:35.63044313 +0000 UTC m=+302.866164565 I0509 16:54:35.649182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-33.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-33.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:54:35.696559 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-33.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-33.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:55:36.627402 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:55:36.627403 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-09 16:55:36.627376064 +0000 UTC m=+363.863097529 I0509 16:55:36.627459 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-09 16:55:36.627450516 +0000 UTC m=+363.863171951 E0509 16:55:36.639616 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 16:55:36.639654 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-09 16:55:36.639646153 +0000 UTC m=+363.875367578 E0509 16:55:36.639689 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0509 16:55:36.641768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:55:36.641878 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:55:36.641908 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-09 16:55:36.641898941 +0000 UTC m=+363.877620396 E0509 16:55:36.652616 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0509 16:55:36.652837 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 16:55:36.652877 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0509 16:55:36.653004 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0509 16:55:36.682444 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k5cc9" condition "Approved" to 2026-05-09 16:55:36.682431468 +0000 UTC m=+363.918152903 I0509 16:55:36.693241 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-k5cc9" condition "Ready" to 2026-05-09 16:55:36.693221077 +0000 UTC m=+363.928942512 I0509 16:55:36.716798 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:55:36.716781256 +0000 UTC m=+363.952502721 I0509 16:55:36.736859 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:55:36.737614 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:55:36.737606886 +0000 UTC m=+363.973328321 I0509 16:55:36.752128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:55:41.653975 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:55:41.653959332 +0000 UTC m=+368.889680797 I0509 16:56:21.843150 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-09 16:56:21.843074027 +0000 UTC m=+409.078795442 I0509 16:56:21.843360 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:21.843405 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-09 16:56:21.843400146 +0000 UTC m=+409.079121571 I0509 16:56:21.845952 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:21.845985 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-09 16:56:21.84597852 +0000 UTC m=+409.081699945 I0509 16:56:21.848490 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-09 16:56:21.848479862 +0000 UTC m=+409.084201287 I0509 16:56:21.854426 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-09 16:56:21.854413001 +0000 UTC m=+409.090134426 I0509 16:56:21.854739 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:21.858553 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-09 16:56:21.854766041 +0000 UTC m=+409.090487466 I0509 16:56:21.897373 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:21.897992 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:21.898048 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-09 16:56:21.898040395 +0000 UTC m=+409.133761820 I0509 16:56:21.899416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:21.899454 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:21.899526 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-09 16:56:21.899520667 +0000 UTC m=+409.135242092 I0509 16:56:21.901696 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:21.901812 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-09 16:56:21.901798752 +0000 UTC m=+409.137520177 I0509 16:56:22.047019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:22.076513 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-vr8gj" condition "Approved" to 2026-05-09 16:56:22.076502183 +0000 UTC m=+409.312223618 I0509 16:56:22.120127 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-vr8gj" condition "Ready" to 2026-05-09 16:56:22.120114242 +0000 UTC m=+409.355835677 I0509 16:56:22.174733 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:22.174722387 +0000 UTC m=+409.410443822 I0509 16:56:22.178689 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vzrth" condition "Approved" to 2026-05-09 16:56:22.17867926 +0000 UTC m=+409.414400695 I0509 16:56:22.193640 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-vzrth" condition "Ready" to 2026-05-09 16:56:22.193628388 +0000 UTC m=+409.429349833 I0509 16:56:22.198028 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:22.202107 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:22.218518 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:22.218504301 +0000 UTC m=+409.454225726 I0509 16:56:22.230026 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-8slz5" condition "Approved" to 2026-05-09 16:56:22.230011861 +0000 UTC m=+409.465733296 I0509 16:56:22.331091 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:22.331705 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:22.331694045 +0000 UTC m=+409.567415500 I0509 16:56:22.492512 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-8slz5" condition "Ready" to 2026-05-09 16:56:22.492495061 +0000 UTC m=+409.728216526 E0509 16:56:22.832436 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"alertmanager-tls-nlwqb\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" I0509 16:56:23.247268 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:23.282348 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:23.282330457 +0000 UTC m=+410.518051922 I0509 16:56:23.327158 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:23.427339 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:23.427772 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:23.427764123 +0000 UTC m=+410.663485558 I0509 16:56:23.676075 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:31.545933 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" condition "Ready" to 2026-05-09 16:56:31.545888437 +0000 UTC m=+418.781609902 I0509 16:56:31.545958 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:31.546128 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" condition "Issuing" to 2026-05-09 16:56:31.546119184 +0000 UTC m=+418.781840619 I0509 16:56:31.564676 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:31.564781 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" condition "Ready" to 2026-05-09 16:56:31.564774211 +0000 UTC m=+418.800495646 I0509 16:56:31.877631 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:31.917345 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-g4bc7-2bp9p" condition "Approved" to 2026-05-09 16:56:31.917334965 +0000 UTC m=+419.153056390 I0509 16:56:31.935508 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-g4bc7-2bp9p" condition "Ready" to 2026-05-09 16:56:31.935494907 +0000 UTC m=+419.171216332 I0509 16:56:31.972206 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:31.972184971 +0000 UTC m=+419.207906396 I0509 16:56:31.995047 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-g4bc7-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:44.434810 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-09 16:56:44.434787035 +0000 UTC m=+431.670508450 I0509 16:56:44.435183 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:44.435200 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-09 16:56:44.435197208 +0000 UTC m=+431.670918633 I0509 16:56:44.451586 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:44.451743 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:56:44.451792 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-09 16:56:44.451784589 +0000 UTC m=+431.687506014 I0509 16:56:44.599803 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:56:44.601390 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-lf5nv" condition "Approved" to 2026-05-09 16:56:44.601382113 +0000 UTC m=+431.837103538 I0509 16:56:44.625518 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-lf5nv" condition "Ready" to 2026-05-09 16:56:44.625510771 +0000 UTC m=+431.861232186 I0509 16:56:44.672774 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:56:44.672758024 +0000 UTC m=+431.908479459 I0509 16:56:44.693896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:59:42.380539 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 16:59:42.380590 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-09 16:59:42.380579539 +0000 UTC m=+609.616300994 I0509 16:59:42.380942 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-09 16:59:42.379884509 +0000 UTC m=+609.615605934 I0509 16:59:42.395675 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:59:42.395870 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-09 16:59:42.395861926 +0000 UTC m=+609.631583361 I0509 16:59:42.669444 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:59:42.696078 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-qhpps" condition "Approved" to 2026-05-09 16:59:42.696067144 +0000 UTC m=+609.931788569 I0509 16:59:42.715377 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-qhpps" condition "Ready" to 2026-05-09 16:59:42.71536792 +0000 UTC m=+609.951089345 I0509 16:59:42.746623 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:59:42.746608532 +0000 UTC m=+609.982329967 I0509 16:59:42.764556 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:59:42.765175 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:59:42.765166587 +0000 UTC m=+610.000888022 I0509 16:59:42.776310 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:59:42.783730 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 16:59:42.784218 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 16:59:42.784207103 +0000 UTC m=+610.019928538 I0509 17:00:30.686374 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-05-09 17:00:30.686343556 +0000 UTC m=+657.922064991 I0509 17:00:30.686761 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 17:00:30.686792 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-09 17:00:30.686784705 +0000 UTC m=+657.922506140 I0509 17:00:30.701138 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 17:00:30.701201 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0509 17:00:30.701218 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-05-09 17:00:30.701213601 +0000 UTC m=+657.936935036 I0509 17:00:30.848796 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 17:00:30.863576 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-qbw9d" condition "Approved" to 2026-05-09 17:00:30.863559312 +0000 UTC m=+658.099280747 I0509 17:00:30.882340 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-qbw9d" condition "Ready" to 2026-05-09 17:00:30.882328957 +0000 UTC m=+658.118050392 I0509 17:00:30.903925 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 17:00:30.903914255 +0000 UTC m=+658.139635670 I0509 17:00:30.922703 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0509 17:00:30.923013 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-09 17:00:30.923005303 +0000 UTC m=+658.158726738 I0509 17:00:30.944743 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"