I0429 01:52:17.493650 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0429 01:52:17.493787 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0429 01:52:17.493891 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0429 01:52:17.500003 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0429 01:52:17.500611 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0429 01:52:17.500713 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0429 01:52:17.500738 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0429 01:52:17.504858 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0429 01:52:17.518486 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0429 01:52:17.523586 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0429 01:52:17.524414 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0429 01:52:17.526747 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0429 01:52:17.529328 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0429 01:52:17.533946 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0429 01:52:17.533985 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0429 01:52:17.534017 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0429 01:52:17.539672 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0429 01:52:17.542350 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0429 01:52:17.544360 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0429 01:52:17.546220 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0429 01:52:17.548058 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0429 01:52:17.550019 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0429 01:52:17.551723 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0429 01:52:17.551747 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0429 01:52:17.551824 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0429 01:52:17.557478 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0429 01:52:17.560196 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0429 01:52:17.562569 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0429 01:52:17.564867 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0429 01:52:17.566679 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0429 01:52:17.568594 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0429 01:52:17.568758 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0429 01:52:17.571193 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0429 01:52:17.572478 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.574058 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.574625 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.575495 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.575581 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.576328 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.576730 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.576733 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.577387 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:17.658179 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0429 01:52:29.992663 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-29 01:52:29.992637409 +0000 UTC m=+12.530191447 I0429 01:52:30.783646 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:52:30.783742 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-29 01:52:30.783730049 +0000 UTC m=+13.321284077 I0429 01:52:30.783986 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-29 01:52:30.783961592 +0000 UTC m=+13.321515620 E0429 01:52:30.799481 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 01:52:30.799593 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-29 01:52:30.799579083 +0000 UTC m=+13.337133111 E0429 01:52:30.799631 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 01:52:30.805128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:52:30.805298 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:52:30.805340 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-29 01:52:30.805334647 +0000 UTC m=+13.342888655 E0429 01:52:30.812981 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0429 01:52:30.813294 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 01:52:30.813435 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 01:52:30.813565 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0429 01:52:30.847942 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:52:30.850697 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m2bcx" condition "Approved" to 2026-04-29 01:52:30.850686302 +0000 UTC m=+13.388240310 I0429 01:52:30.864533 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-m2bcx" condition "Ready" to 2026-04-29 01:52:30.86452155 +0000 UTC m=+13.402075558 I0429 01:52:30.884029 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:52:30.884020811 +0000 UTC m=+13.421574819 I0429 01:52:30.905872 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:52:30.951363 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:52:35.813996 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:52:35.813971235 +0000 UTC m=+18.351525263 I0429 01:53:01.257398 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:53:01.258003 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-29 01:53:01.257982772 +0000 UTC m=+43.795536780 I0429 01:53:01.257470 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-29 01:53:01.257452097 +0000 UTC m=+43.795006185 I0429 01:53:01.277130 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-29 01:53:01.277113691 +0000 UTC m=+43.814667689 I0429 01:53:01.301306 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:53:01.301390 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:53:01.301417 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-29 01:53:01.301408994 +0000 UTC m=+43.838962992 I0429 01:53:01.567228 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:53:01.583236 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-c79xh" condition "Approved" to 2026-04-29 01:53:01.583219029 +0000 UTC m=+44.120773037 I0429 01:53:01.617219 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-c79xh" condition "Ready" to 2026-04-29 01:53:01.617204069 +0000 UTC m=+44.154758057 I0429 01:53:01.654070 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:53:01.65404785 +0000 UTC m=+44.191601858 I0429 01:53:01.683191 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:53:01.750731 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:58:36.640540 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-109.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:58:36.640585 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-109.nip.io-tls" condition "Issuing" to 2026-04-29 01:58:36.640574908 +0000 UTC m=+379.178128946 I0429 01:58:36.640681 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-109.nip.io-tls" condition "Ready" to 2026-04-29 01:58:36.640667189 +0000 UTC m=+379.178221187 I0429 01:58:36.656766 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-109.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-109.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:58:36.656844 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-204-45-109.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:58:36.656882 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-109.nip.io-tls" condition "Issuing" to 2026-04-29 01:58:36.656875544 +0000 UTC m=+379.194429552 I0429 01:58:36.891027 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-109.nip.io-tls-9zb2j" condition "Approved" to 2026-04-29 01:58:36.891015359 +0000 UTC m=+379.428569367 I0429 01:58:36.923970 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-109.nip.io-tls-9zb2j" condition "Ready" to 2026-04-29 01:58:36.923957934 +0000 UTC m=+379.461511942 I0429 01:58:36.948827 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-109.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:58:36.948815442 +0000 UTC m=+379.486369450 I0429 01:58:36.972462 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-109.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-109.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:58:36.973104 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-109.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:58:36.973095902 +0000 UTC m=+379.510649910 I0429 01:58:36.995790 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-204-45-109.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-109.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:58:36.996023 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-204-45-109.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-109.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:58:36.996070 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-109.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:58:36.996062584 +0000 UTC m=+379.533616582 I0429 01:59:41.617465 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 01:59:41.617504 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-29 01:59:41.617495296 +0000 UTC m=+444.155049304 I0429 01:59:41.617883 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-29 01:59:41.61787746 +0000 UTC m=+444.155431468 I0429 01:59:41.635851 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:59:41.635958 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-29 01:59:41.635946561 +0000 UTC m=+444.173500569 E0429 01:59:41.636524 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0429 01:59:41.636569 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-29 01:59:41.636563669 +0000 UTC m=+444.174117677 E0429 01:59:41.636629 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 01:59:41.655308 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0429 01:59:41.655486 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 01:59:41.655527 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0429 01:59:41.655569 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0429 01:59:41.656412 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:59:41.681313 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-55qk7" condition "Approved" to 2026-04-29 01:59:41.681296418 +0000 UTC m=+444.218850416 I0429 01:59:41.695180 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-55qk7" condition "Ready" to 2026-04-29 01:59:41.695165735 +0000 UTC m=+444.232719743 I0429 01:59:41.724625 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:59:41.72460681 +0000 UTC m=+444.262160838 I0429 01:59:41.743818 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0429 01:59:46.655817 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 01:59:46.655800851 +0000 UTC m=+449.193354879 I0429 02:00:28.425463 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-04-29 02:00:28.425432825 +0000 UTC m=+490.962986823 I0429 02:00:28.426929 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:28.426952 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-29 02:00:28.426948783 +0000 UTC m=+490.964502781 I0429 02:00:28.427340 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-04-29 02:00:28.427335728 +0000 UTC m=+490.964889726 I0429 02:00:28.429055 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:28.429072 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-29 02:00:28.429068999 +0000 UTC m=+490.966622987 I0429 02:00:28.429289 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:28.429303 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-04-29 02:00:28.429300851 +0000 UTC m=+490.966854849 I0429 02:00:28.429505 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-29 02:00:28.429501383 +0000 UTC m=+490.967055381 I0429 02:00:28.455606 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.455700 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:28.455760 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-04-29 02:00:28.455714358 +0000 UTC m=+490.993268356 I0429 02:00:28.473482 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.473720 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:28.473796 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-04-29 02:00:28.473786324 +0000 UTC m=+491.011340332 I0429 02:00:28.476059 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.476267 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-04-29 02:00:28.476257513 +0000 UTC m=+491.013811511 I0429 02:00:28.596609 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.633403 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-qd48s" condition "Approved" to 2026-04-29 02:00:28.633385714 +0000 UTC m=+491.170939702 I0429 02:00:28.653557 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-qd48s" condition "Ready" to 2026-04-29 02:00:28.653537644 +0000 UTC m=+491.191091642 I0429 02:00:28.689519 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-qdrmj" condition "Approved" to 2026-04-29 02:00:28.689490025 +0000 UTC m=+491.227044013 I0429 02:00:28.717113 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:28.717096865 +0000 UTC m=+491.254650863 I0429 02:00:28.738334 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-qdrmj" condition "Ready" to 2026-04-29 02:00:28.73832169 +0000 UTC m=+491.275875688 I0429 02:00:28.742207 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.747633 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:28.747613 +0000 UTC m=+491.285166998 I0429 02:00:28.769013 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.776698 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:28.776683428 +0000 UTC m=+491.314237426 I0429 02:00:28.836143 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:28.837105 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:28.837091671 +0000 UTC m=+491.374645699 I0429 02:00:29.189701 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rrqtc" condition "Approved" to 2026-04-29 02:00:29.189688998 +0000 UTC m=+491.727242996 I0429 02:00:29.236058 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:29.283913 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:29.339517 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-rrqtc" condition "Ready" to 2026-04-29 02:00:29.339502279 +0000 UTC m=+491.877056287 I0429 02:00:29.881189 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:29.881172894 +0000 UTC m=+492.418726892 I0429 02:00:29.982272 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:38.320154 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:38.320237 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" condition "Ready" to 2026-04-29 02:00:38.320213103 +0000 UTC m=+500.857767121 I0429 02:00:38.320225 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" condition "Issuing" to 2026-04-29 02:00:38.320212153 +0000 UTC m=+500.857766181 I0429 02:00:38.340061 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:38.340194 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:38.340220 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" condition "Issuing" to 2026-04-29 02:00:38.340213781 +0000 UTC m=+500.877767789 I0429 02:00:38.660175 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-dxlkv-mtgs5" condition "Approved" to 2026-04-29 02:00:38.660152447 +0000 UTC m=+501.197706445 I0429 02:00:38.684748 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-dxlkv-mtgs5" condition "Ready" to 2026-04-29 02:00:38.684732518 +0000 UTC m=+501.222286526 I0429 02:00:38.732045 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:38.732027288 +0000 UTC m=+501.269581286 I0429 02:00:38.763084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-dxlkv-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:54.287581 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-29 02:00:54.287559306 +0000 UTC m=+516.825113314 I0429 02:00:54.287722 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:00:54.287779 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-29 02:00:54.287766939 +0000 UTC m=+516.825320947 I0429 02:00:54.363100 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:54.363216 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-29 02:00:54.363204108 +0000 UTC m=+516.900758116 I0429 02:00:54.620065 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:54.653119 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xmg7c" condition "Approved" to 2026-04-29 02:00:54.653099794 +0000 UTC m=+517.190653802 I0429 02:00:54.672598 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-xmg7c" condition "Ready" to 2026-04-29 02:00:54.67258679 +0000 UTC m=+517.210140788 I0429 02:00:54.702957 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:54.702940794 +0000 UTC m=+517.240494792 I0429 02:00:54.725778 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:54.726202 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:00:54.726192135 +0000 UTC m=+517.263746143 I0429 02:00:54.736235 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:00:54.755190 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:04:18.822148 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:04:18.822229 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-29 02:04:18.822215966 +0000 UTC m=+721.359770004 I0429 02:04:18.822244 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-29 02:04:18.822228457 +0000 UTC m=+721.359782455 I0429 02:04:18.839128 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:04:18.839206 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-29 02:04:18.83919977 +0000 UTC m=+721.376753758 I0429 02:04:19.007752 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:04:19.039438 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wr82q" condition "Approved" to 2026-04-29 02:04:19.0394281 +0000 UTC m=+721.576982098 I0429 02:04:19.056812 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-wr82q" condition "Ready" to 2026-04-29 02:04:19.056801263 +0000 UTC m=+721.594355271 I0429 02:04:19.096142 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:04:19.096124102 +0000 UTC m=+721.633678100 I0429 02:04:19.117175 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:04:19.117898 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:04:19.117883353 +0000 UTC m=+721.655437381 I0429 02:04:19.237896 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:05:02.032926 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:05:02.032975 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-29 02:05:02.032969316 +0000 UTC m=+764.570523314 I0429 02:05:02.033211 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-29 02:05:02.033207252 +0000 UTC m=+764.570761250 I0429 02:05:02.053243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:05:02.053308 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0429 02:05:02.053324 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-29 02:05:02.053317984 +0000 UTC m=+764.590871992 I0429 02:05:02.462096 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nljd9" condition "Approved" to 2026-04-29 02:05:02.462081026 +0000 UTC m=+764.999635044 I0429 02:05:02.485800 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-nljd9" condition "Ready" to 2026-04-29 02:05:02.485790025 +0000 UTC m=+765.023344023 I0429 02:05:02.517666 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:05:02.517642243 +0000 UTC m=+765.055196251 I0429 02:05:02.535243 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:05:02.535823 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-29 02:05:02.535812667 +0000 UTC m=+765.073366695 I0429 02:05:02.553528 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0429 02:05:02.570008 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"