I0408 01:23:35.215628 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0408 01:23:35.215783 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0408 01:23:35.215852 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0408 01:23:35.221080 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0408 01:23:35.221595 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0408 01:23:35.221649 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0408 01:23:35.221725 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0408 01:23:35.224381 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0408 01:23:35.252813 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0408 01:23:35.259430 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0408 01:23:35.263547 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0408 01:23:35.270765 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0408 01:23:35.273550 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0408 01:23:35.273707 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0408 01:23:35.275960 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0408 01:23:35.276187 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0408 01:23:35.278278 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0408 01:23:35.278302 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0408 01:23:35.278314 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0408 01:23:35.278380 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0408 01:23:35.281034 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0408 01:23:35.282956 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0408 01:23:35.287905 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0408 01:23:35.292308 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0408 01:23:35.295971 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0408 01:23:35.298800 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0408 01:23:35.301635 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0408 01:23:35.304144 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0408 01:23:35.307324 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0408 01:23:35.309028 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0408 01:23:35.309071 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0408 01:23:35.310942 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0408 01:23:35.315728 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0408 01:23:35.319450 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.320008 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.320133 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.341235 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.360704 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.374858 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.387337 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.410212 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.412727 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:35.429372 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0408 01:23:55.291484 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-08 01:23:55.291467939 +0000 UTC m=+20.109681162 I0408 01:23:56.060673 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:23:56.060807 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 01:23:56.060793597 +0000 UTC m=+20.879006820 I0408 01:23:56.060753 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-08 01:23:56.060691925 +0000 UTC m=+20.878905158 E0408 01:23:56.079843 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 01:23:56.079933 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-08 01:23:56.07992488 +0000 UTC m=+20.898138083 E0408 01:23:56.079956 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0408 01:23:56.083780 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:56.083863 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:23:56.083932 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-08 01:23:56.083921813 +0000 UTC m=+20.902135016 E0408 01:23:56.095288 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0408 01:23:56.095441 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 01:23:56.095484 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0408 01:23:56.095535 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0408 01:23:56.123623 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:56.130626 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-97rf4" condition "Approved" to 2026-04-08 01:23:56.130606745 +0000 UTC m=+20.948819928 I0408 01:23:56.146436 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-97rf4" condition "Ready" to 2026-04-08 01:23:56.146420928 +0000 UTC m=+20.964634131 I0408 01:23:56.261771 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:23:56.261752044 +0000 UTC m=+21.079965267 I0408 01:23:56.481069 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:56.481648 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:23:56.481638687 +0000 UTC m=+21.299851920 I0408 01:23:56.550697 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:23:56.603402 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:01.096425 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:01.096394512 +0000 UTC m=+25.914607745 I0408 01:24:21.698962 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:24:21.699009 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-08 01:24:21.698997926 +0000 UTC m=+46.517211129 I0408 01:24:21.699083 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 01:24:21.699077648 +0000 UTC m=+46.517290851 I0408 01:24:21.713204 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-08 01:24:21.713182314 +0000 UTC m=+46.531395537 I0408 01:24:21.720687 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:21.720797 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-08 01:24:21.720788674 +0000 UTC m=+46.539001877 I0408 01:24:21.996558 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:22.032350 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-4rptj" condition "Approved" to 2026-04-08 01:24:22.032330856 +0000 UTC m=+46.850544059 I0408 01:24:22.069617 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-4rptj" condition "Ready" to 2026-04-08 01:24:22.06960595 +0000 UTC m=+46.887819143 I0408 01:24:22.103051 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:22.103031082 +0000 UTC m=+46.921244315 I0408 01:24:22.131104 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:22.131575 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:22.131566883 +0000 UTC m=+46.949780086 I0408 01:24:22.142145 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:22.151882 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:24:22.152229 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:24:22.152219787 +0000 UTC m=+46.970432990 I0408 01:24:22.157416 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:24.937613 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-08 01:27:24.937454733 +0000 UTC m=+229.755667936 I0408 01:27:24.939740 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:27:24.939839 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-08 01:27:24.939827506 +0000 UTC m=+229.758040729 E0408 01:27:25.043672 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 01:27:25.043754 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-08 01:27:25.043742644 +0000 UTC m=+229.861955867 I0408 01:27:25.043982 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 01:27:25.046973 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:25.047072 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:27:25.047099 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-08 01:27:25.047091138 +0000 UTC m=+229.865304341 E0408 01:27:25.059945 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0408 01:27:25.060362 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0408 01:27:25.060389 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0408 01:27:25.060427 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0408 01:27:25.113535 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-08 01:27:25.113515874 +0000 UTC m=+229.931729097 I0408 01:27:25.113822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:27:25.113934 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-08 01:27:25.113884152 +0000 UTC m=+229.932097385 I0408 01:27:25.139514 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:25.139583 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:27:25.139601 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-08 01:27:25.139594193 +0000 UTC m=+229.957807396 I0408 01:27:25.375482 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-vwsjx" condition "Approved" to 2026-04-08 01:27:25.375469554 +0000 UTC m=+230.193682757 I0408 01:27:25.383148 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-c5969" condition "Approved" to 2026-04-08 01:27:25.383133623 +0000 UTC m=+230.201346846 I0408 01:27:25.419153 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-vwsjx" condition "Ready" to 2026-04-08 01:27:25.419133963 +0000 UTC m=+230.237347186 I0408 01:27:25.425304 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-c5969" condition "Ready" to 2026-04-08 01:27:25.425288429 +0000 UTC m=+230.243501622 I0408 01:27:25.471294 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:27:25.471274981 +0000 UTC m=+230.289488204 I0408 01:27:25.500298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:25.500697 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:27:25.500687484 +0000 UTC m=+230.318900697 I0408 01:27:25.511502 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:25.519443 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:30.060762 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:27:30.060743669 +0000 UTC m=+234.878956912 I0408 01:27:30.089684 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-vwsjx" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:27:30.089673352 +0000 UTC m=+234.907886555 I0408 01:27:30.124312 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:27:30.124301861 +0000 UTC m=+234.942515064 I0408 01:27:30.147042 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:27:30.207137 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:30:33.971758 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-244.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:30:33.971918 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-244.nip.io-tls" condition "Issuing" to 2026-04-08 01:30:33.971852528 +0000 UTC m=+418.790065731 I0408 01:30:33.972386 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-244.nip.io-tls" condition "Ready" to 2026-04-08 01:30:33.971659732 +0000 UTC m=+418.789872955 I0408 01:30:33.990862 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:30:33.990972 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-244.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0408 01:30:33.990997 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-244.nip.io-tls" condition "Issuing" to 2026-04-08 01:30:33.990989974 +0000 UTC m=+418.809203177 I0408 01:30:34.184328 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-244.nip.io-tls-gg2b2" condition "Approved" to 2026-04-08 01:30:34.184309027 +0000 UTC m=+419.002522230 I0408 01:30:34.207688 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-244.nip.io-tls-gg2b2" condition "Ready" to 2026-04-08 01:30:34.207668366 +0000 UTC m=+419.025881589 I0408 01:30:34.241076 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-244.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:30:34.241054115 +0000 UTC m=+419.059267338 I0408 01:30:34.266199 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:30:34.266656 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-244.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:30:34.266648127 +0000 UTC m=+419.084861330 I0408 01:30:34.270007 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="auth-system/keycloak.199-204-45-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:30:34.282374 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0408 01:30:34.282820 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-244.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-08 01:30:34.282808863 +0000 UTC m=+419.101022086 I0408 01:30:34.285878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-244.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-244.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again"