I0226 16:53:00.875197 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0226 16:53:00.875383 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0226 16:53:00.875497 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0226 16:53:00.882671 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0226 16:53:00.883240 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0226 16:53:00.883413 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0226 16:53:00.883431 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0226 16:53:00.887360 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0226 16:53:01.216676 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0226 16:53:01.216904 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0226 16:53:01.216999 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0226 16:53:01.217019 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0226 16:53:01.220912 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0226 16:53:01.223870 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0226 16:53:01.229397 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0226 16:53:01.232162 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0226 16:53:01.234676 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0226 16:53:01.236477 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0226 16:53:01.236524 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0226 16:53:01.238787 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0226 16:53:01.240504 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0226 16:53:01.240555 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0226 16:53:01.244966 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0226 16:53:01.248430 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0226 16:53:01.251481 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0226 16:53:01.254251 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0226 16:53:01.256713 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0226 16:53:01.258590 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0226 16:53:01.260358 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0226 16:53:01.262180 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0226 16:53:01.262243 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0226 16:53:01.264265 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0226 16:53:01.270649 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0226 16:53:01.273477 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.275247 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.275252 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.275775 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.275925 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.275973 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.276163 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.276710 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.277132 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:01.304410 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0226 16:53:05.510145 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-02-26 16:53:05.51012494 +0000 UTC m=+4.667393577 I0226 16:53:06.188872 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:53:06.188850 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-02-26 16:53:06.188833896 +0000 UTC m=+5.346102523 I0226 16:53:06.188918 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-26 16:53:06.188908157 +0000 UTC m=+5.346176784 E0226 16:53:06.200333 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0226 16:53:06.200419 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-02-26 16:53:06.200410303 +0000 UTC m=+5.357678900 E0226 16:53:06.200443 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0226 16:53:06.202347 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:06.202421 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:53:06.202447 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-26 16:53:06.202440855 +0000 UTC m=+5.359709462 E0226 16:53:06.208452 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0226 16:53:06.208557 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0226 16:53:06.208608 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0226 16:53:06.208654 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0226 16:53:06.239753 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:06.245029 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8n5tv" condition "Approved" to 2026-02-26 16:53:06.245018669 +0000 UTC m=+5.402287266 I0226 16:53:06.256719 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-8n5tv" condition "Ready" to 2026-02-26 16:53:06.256708689 +0000 UTC m=+5.413977296 I0226 16:53:06.280328 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:06.280315316 +0000 UTC m=+5.437583923 I0226 16:53:06.301432 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:06.301881 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:06.301870989 +0000 UTC m=+5.459139626 I0226 16:53:06.314287 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:06.314614 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:06.314608817 +0000 UTC m=+5.471877424 I0226 16:53:11.209748 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:11.209734263 +0000 UTC m=+10.367002890 I0226 16:53:39.794524 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-02-26 16:53:39.79450093 +0000 UTC m=+38.951769547 I0226 16:53:39.795238 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:53:39.795306 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-02-26 16:53:39.79529541 +0000 UTC m=+38.952564037 I0226 16:53:39.807873 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-02-26 16:53:39.807860293 +0000 UTC m=+38.965128900 I0226 16:53:39.816337 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:39.816423 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:53:39.816462 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-02-26 16:53:39.816448644 +0000 UTC m=+38.973717241 I0226 16:53:40.064705 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:40.073690 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-q9kfg" condition "Approved" to 2026-02-26 16:53:40.073677962 +0000 UTC m=+39.230946569 I0226 16:53:40.105763 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-q9kfg" condition "Ready" to 2026-02-26 16:53:40.105742426 +0000 UTC m=+39.263011033 I0226 16:53:40.139210 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:40.139197485 +0000 UTC m=+39.296466092 I0226 16:53:40.166860 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:40.167331 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:40.167320967 +0000 UTC m=+39.324589574 I0226 16:53:40.183878 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:40.184765 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:53:40.185082 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:53:40.185071264 +0000 UTC m=+39.342339871 I0226 16:55:43.950922 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:55:43.951029 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-02-26 16:55:43.951015171 +0000 UTC m=+163.108283798 I0226 16:55:43.951163 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-02-26 16:55:43.951139674 +0000 UTC m=+163.108408301 E0226 16:55:43.963487 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0226 16:55:43.963595 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-02-26 16:55:43.963586138 +0000 UTC m=+163.120854765 I0226 16:55:43.963623 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0226 16:55:43.970031 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:43.970121 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-02-26 16:55:43.970113693 +0000 UTC m=+163.127382300 E0226 16:55:43.971848 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0226 16:55:43.972165 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0226 16:55:43.972220 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0226 16:55:43.972248 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0226 16:55:43.976263 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:55:43.976255 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-02-26 16:55:43.976248038 +0000 UTC m=+163.133516635 I0226 16:55:43.976309 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-02-26 16:55:43.976300579 +0000 UTC m=+163.133569186 I0226 16:55:43.992000 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:43.992336 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-02-26 16:55:43.992325798 +0000 UTC m=+163.149594415 I0226 16:55:44.084516 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:44.115261 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-8k2kf" condition "Approved" to 2026-02-26 16:55:44.115244475 +0000 UTC m=+163.272513112 I0226 16:55:44.145618 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-8k2kf" condition "Ready" to 2026-02-26 16:55:44.145596682 +0000 UTC m=+163.302865319 I0226 16:55:44.175237 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:44.175216063 +0000 UTC m=+163.332484690 I0226 16:55:44.197019 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:44.197496 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:44.19748354 +0000 UTC m=+163.354752167 I0226 16:55:44.201127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:44.210847 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:44.211123 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:44.211116033 +0000 UTC m=+163.368384640 I0226 16:55:44.479661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:44.511985 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9lxwk" condition "Approved" to 2026-02-26 16:55:44.511969588 +0000 UTC m=+163.669238215 I0226 16:55:44.528470 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-9lxwk" condition "Ready" to 2026-02-26 16:55:44.528454888 +0000 UTC m=+163.685723505 I0226 16:55:48.972634 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:48.972624372 +0000 UTC m=+168.129892979 I0226 16:55:48.989686 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-9lxwk" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:48.989676576 +0000 UTC m=+168.146945183 I0226 16:55:49.018813 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:49.018800545 +0000 UTC m=+168.176069172 I0226 16:55:49.037504 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:49.037760 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:55:49.037754433 +0000 UTC m=+168.195023040 I0226 16:55:49.048733 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:55:49.054672 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:58:21.239295 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready" to 2026-02-26 16:58:21.239270415 +0000 UTC m=+320.396539042 I0226 16:58:21.239361 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-238.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:58:21.239435 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Issuing" to 2026-02-26 16:58:21.239424789 +0000 UTC m=+320.396693416 I0226 16:58:21.264398 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:58:21.264476 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-238.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:58:21.264495 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Issuing" to 2026-02-26 16:58:21.264488024 +0000 UTC m=+320.421756631 I0226 16:58:21.771292 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:58:21.780267 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-238.nip.io-tls-vddrb" condition "Approved" to 2026-02-26 16:58:21.780250605 +0000 UTC m=+320.937519242 I0226 16:58:21.800826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-238.nip.io-tls-vddrb" condition "Ready" to 2026-02-26 16:58:21.800797741 +0000 UTC m=+320.958066348 I0226 16:58:21.838217 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:58:21.838198744 +0000 UTC m=+320.995467381 I0226 16:58:21.861468 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:58:21.861865 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:58:21.861857295 +0000 UTC m=+321.019125902 I0226 16:58:21.878309 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-238.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-238.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:58:21.878864 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-238.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:58:21.878853406 +0000 UTC m=+321.036122013 I0226 16:59:31.832442 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-02-26 16:59:31.832423997 +0000 UTC m=+390.989692604 I0226 16:59:31.833062 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 16:59:31.833099 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-02-26 16:59:31.833093373 +0000 UTC m=+390.990361980 I0226 16:59:31.848572 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" E0226 16:59:31.849061 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0226 16:59:31.849113 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-02-26 16:59:31.849101944 +0000 UTC m=+391.006370551 E0226 16:59:31.849181 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0226 16:59:31.849293 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-02-26 16:59:31.849276758 +0000 UTC m=+391.006545395 E0226 16:59:31.859572 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0226 16:59:31.859973 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0226 16:59:31.860075 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0226 16:59:31.860156 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0226 16:59:31.865140 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:59:31.887550 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jfrb4" condition "Approved" to 2026-02-26 16:59:31.887532969 +0000 UTC m=+391.044801596 I0226 16:59:31.899180 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jfrb4" condition "Ready" to 2026-02-26 16:59:31.899169496 +0000 UTC m=+391.056438093 I0226 16:59:31.922668 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:59:31.922656204 +0000 UTC m=+391.079924811 I0226 16:59:31.940982 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:59:31.941460 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:59:31.941449122 +0000 UTC m=+391.098717759 I0226 16:59:31.955811 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:59:31.956204 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:59:31.956193642 +0000 UTC m=+391.113462249 I0226 16:59:31.957008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0226 16:59:36.861285 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 16:59:36.861263972 +0000 UTC m=+396.018532599 I0226 17:00:14.846504 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:14.846543 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-26 17:00:14.846535111 +0000 UTC m=+434.003803718 I0226 17:00:14.846600 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-02-26 17:00:14.846586662 +0000 UTC m=+434.003855269 I0226 17:00:14.848834 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-02-26 17:00:14.848817385 +0000 UTC m=+434.006085982 I0226 17:00:14.848906 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:14.848897 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:14.848959 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-02-26 17:00:14.848955539 +0000 UTC m=+434.006224146 I0226 17:00:14.848830 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-02-26 17:00:14.848824565 +0000 UTC m=+434.006093172 I0226 17:00:14.848926 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-26 17:00:14.848922048 +0000 UTC m=+434.006190645 I0226 17:00:14.889656 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:14.889739 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:14.889761 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-02-26 17:00:14.889754309 +0000 UTC m=+434.047022906 I0226 17:00:14.890068 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:14.890096 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:14.890110 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-02-26 17:00:14.890107387 +0000 UTC m=+434.047375974 I0226 17:00:14.890267 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:14.890293 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:14.890306 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-02-26 17:00:14.890303672 +0000 UTC m=+434.047572269 I0226 17:00:15.111143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:15.120800 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-6pglz" condition "Approved" to 2026-02-26 17:00:15.120773637 +0000 UTC m=+434.278042294 I0226 17:00:15.145826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-6pglz" condition "Ready" to 2026-02-26 17:00:15.145807363 +0000 UTC m=+434.303075990 I0226 17:00:15.190784 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:15.190767173 +0000 UTC m=+434.348035770 I0226 17:00:15.211403 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:15.211716 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:15.211707601 +0000 UTC m=+434.368976208 I0226 17:00:15.232622 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:15.232874 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:15.232866935 +0000 UTC m=+434.390135542 I0226 17:00:15.314097 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:15.326415 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lmzgz" condition "Approved" to 2026-02-26 17:00:15.32638893 +0000 UTC m=+434.483657537 I0226 17:00:15.344256 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-lmzgz" condition "Ready" to 2026-02-26 17:00:15.344242265 +0000 UTC m=+434.501510862 I0226 17:00:15.346515 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-zsqfr" condition "Approved" to 2026-02-26 17:00:15.346500569 +0000 UTC m=+434.503769166 I0226 17:00:15.397043 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-zsqfr" condition "Ready" to 2026-02-26 17:00:15.397023431 +0000 UTC m=+434.554292068 I0226 17:00:15.731729 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:15.731716026 +0000 UTC m=+434.888984643 E0226 17:00:15.877745 1 controller.go:167] "re-queuing item due to error processing" err="secrets \"prometheus-tls-2jvch\" already exists" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" I0226 17:00:16.032791 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:16.033269 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:16.033259322 +0000 UTC m=+435.190527949 I0226 17:00:16.124302 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:16.124288769 +0000 UTC m=+435.281557366 I0226 17:00:16.384210 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:16.431606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:16.482824 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:54.587198 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" condition "Ready" to 2026-02-26 17:00:54.587178702 +0000 UTC m=+473.744447329 I0226 17:00:54.587386 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:54.587439 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" condition "Issuing" to 2026-02-26 17:00:54.587428698 +0000 UTC m=+473.744697315 I0226 17:00:54.602722 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:54.602822 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:00:54.602853 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" condition "Issuing" to 2026-02-26 17:00:54.602841165 +0000 UTC m=+473.760109792 I0226 17:00:54.920646 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:00:54.925243 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-z7vcb-bm8bn" condition "Approved" to 2026-02-26 17:00:54.925201037 +0000 UTC m=+474.082469644 I0226 17:00:54.996567 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-z7vcb-bm8bn" condition "Ready" to 2026-02-26 17:00:54.996553939 +0000 UTC m=+474.153822546 I0226 17:00:55.147515 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:00:55.14749748 +0000 UTC m=+474.304766087 I0226 17:00:55.473286 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-z7vcb-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:01:49.739170 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-02-26 17:01:49.739150978 +0000 UTC m=+528.896419605 I0226 17:01:49.739336 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:01:49.739385 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-02-26 17:01:49.739373624 +0000 UTC m=+528.896642251 I0226 17:01:49.790221 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:01:49.790395 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:01:49.790420 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-02-26 17:01:49.790413829 +0000 UTC m=+528.947682436 I0226 17:01:50.226240 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:01:50.268456 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ln22m" condition "Approved" to 2026-02-26 17:01:50.268442586 +0000 UTC m=+529.425711193 I0226 17:01:50.313164 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-ln22m" condition "Ready" to 2026-02-26 17:01:50.313149109 +0000 UTC m=+529.470417736 I0226 17:01:50.357345 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:01:50.357332409 +0000 UTC m=+529.514601026 I0226 17:01:50.398440 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:01:50.398841 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:01:50.398832165 +0000 UTC m=+529.556100772 I0226 17:01:50.418943 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:04:51.415364 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-02-26 17:04:51.415349907 +0000 UTC m=+710.572618524 I0226 17:04:51.415426 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:04:51.415513 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-02-26 17:04:51.4155023 +0000 UTC m=+710.572770937 I0226 17:04:51.433379 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:04:51.433480 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:04:51.433627 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-02-26 17:04:51.433502388 +0000 UTC m=+710.590771035 I0226 17:04:51.609063 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-brgnp" condition "Approved" to 2026-02-26 17:04:51.609046289 +0000 UTC m=+710.766314926 I0226 17:04:51.629214 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-brgnp" condition "Ready" to 2026-02-26 17:04:51.629203928 +0000 UTC m=+710.786472535 I0226 17:04:51.660305 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:04:51.660285246 +0000 UTC m=+710.817553873 I0226 17:04:51.677864 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:04:51.678440 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:04:51.678426498 +0000 UTC m=+710.835695145 I0226 17:04:51.704378 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:07:18.637717 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-02-26 17:07:18.637700466 +0000 UTC m=+857.794969103 I0226 17:07:18.637938 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:07:18.637993 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-02-26 17:07:18.637981304 +0000 UTC m=+857.795249931 I0226 17:07:18.653494 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:07:18.653586 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-02-26 17:07:18.653578108 +0000 UTC m=+857.810846715 I0226 17:07:18.778006 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:07:18.809535 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-mp7wm" condition "Approved" to 2026-02-26 17:07:18.809523954 +0000 UTC m=+857.966792561 I0226 17:07:18.827079 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-mp7wm" condition "Ready" to 2026-02-26 17:07:18.827068305 +0000 UTC m=+857.984336912 I0226 17:07:18.854980 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:07:18.854967599 +0000 UTC m=+858.012236196 I0226 17:07:18.873643 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:08:30.308275 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:08:30.308397 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-02-26 17:08:30.308379123 +0000 UTC m=+929.465647730 I0226 17:08:30.308385 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-02-26 17:08:30.308375103 +0000 UTC m=+929.465643710 I0226 17:08:30.325719 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:08:30.325818 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:08:30.325838 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-02-26 17:08:30.325831518 +0000 UTC m=+929.483100125 I0226 17:08:30.495411 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-gv8pn" condition "Approved" to 2026-02-26 17:08:30.495395809 +0000 UTC m=+929.652664446 I0226 17:08:30.518566 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-gv8pn" condition "Ready" to 2026-02-26 17:08:30.518557068 +0000 UTC m=+929.675825665 I0226 17:08:30.541887 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:08:30.541871859 +0000 UTC m=+929.699140466 I0226 17:08:30.561324 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:08:30.561803 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:08:30.561794272 +0000 UTC m=+929.719062899 I0226 17:08:30.580829 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:11:35.133777 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0226 17:11:35.133900 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-02-26 17:11:35.133888792 +0000 UTC m=+1114.291157429 I0226 17:11:35.134207 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-02-26 17:11:35.134189879 +0000 UTC m=+1114.291458506 I0226 17:11:35.152381 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:11:35.152497 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-02-26 17:11:35.152485433 +0000 UTC m=+1114.309754070 I0226 17:11:35.325130 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:11:35.353075 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-bp7c8" condition "Approved" to 2026-02-26 17:11:35.353063845 +0000 UTC m=+1114.510332442 I0226 17:11:35.378125 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-bp7c8" condition "Ready" to 2026-02-26 17:11:35.378117565 +0000 UTC m=+1114.535386172 I0226 17:11:35.403743 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-26 17:11:35.403728449 +0000 UTC m=+1114.560997056 I0226 17:11:35.423976 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0226 17:11:35.472782 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again"