I0219 02:28:40.014977 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0219 02:28:40.015190 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0219 02:28:40.015330 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0219 02:28:40.023433 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0219 02:28:40.024086 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0219 02:28:40.024197 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0219 02:28:40.024209 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0219 02:28:40.027329 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0219 02:28:40.044394 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0219 02:28:40.044611 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0219 02:28:40.050543 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0219 02:28:40.054191 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0219 02:28:40.062705 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0219 02:28:40.066145 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0219 02:28:40.068048 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0219 02:28:40.068115 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0219 02:28:40.070067 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0219 02:28:40.070083 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0219 02:28:40.070100 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0219 02:28:40.072304 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0219 02:28:40.074231 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0219 02:28:40.078940 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0219 02:28:40.082239 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0219 02:28:40.082285 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0219 02:28:40.082414 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0219 02:28:40.085060 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0219 02:28:40.088227 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0219 02:28:40.090215 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0219 02:28:40.092218 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0219 02:28:40.094111 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0219 02:28:40.095997 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0219 02:28:40.097971 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0219 02:28:40.104369 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0219 02:28:40.107082 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.107503 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.108034 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.108183 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.108602 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.108984 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.109054 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.109355 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.109474 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:40.143745 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0219 02:28:52.546482 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-02-19 02:28:52.546464655 +0000 UTC m=+12.562278479 I0219 02:28:53.233821 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:28:53.233886 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-19 02:28:53.233879025 +0000 UTC m=+13.249692849 I0219 02:28:53.233915 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-02-19 02:28:53.233895645 +0000 UTC m=+13.249709499 E0219 02:28:53.247164 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0219 02:28:53.247246 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-02-19 02:28:53.247236975 +0000 UTC m=+13.263050819 E0219 02:28:53.247277 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0219 02:28:53.249661 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:28:53.249831 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:28:53.249863 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-02-19 02:28:53.249854146 +0000 UTC m=+13.265667980 E0219 02:28:53.257305 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0219 02:28:53.257707 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0219 02:28:53.257891 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0219 02:28:53.258322 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0219 02:28:53.284168 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:28:53.290779 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-9q8nv" condition "Approved" to 2026-02-19 02:28:53.29076241 +0000 UTC m=+13.306576264 I0219 02:28:53.301131 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-9q8nv" condition "Ready" to 2026-02-19 02:28:53.301120462 +0000 UTC m=+13.316934286 I0219 02:28:53.340522 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:28:53.34051072 +0000 UTC m=+13.356324524 I0219 02:28:53.353262 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:28:53.353875 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:28:53.353866 +0000 UTC m=+13.369679844 I0219 02:28:53.373456 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:28:58.257954 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:28:58.257940412 +0000 UTC m=+18.273754266 I0219 02:29:21.401988 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-02-19 02:29:21.401936312 +0000 UTC m=+41.417750136 I0219 02:29:21.402063 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:29:21.402107 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-02-19 02:29:21.402098576 +0000 UTC m=+41.417912400 I0219 02:29:21.413788 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-02-19 02:29:21.413776818 +0000 UTC m=+41.429590642 I0219 02:29:21.428950 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:29:21.429040 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:29:21.429071 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-02-19 02:29:21.429064463 +0000 UTC m=+41.444878277 I0219 02:29:21.662182 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:29:21.672035 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-27tl7" condition "Approved" to 2026-02-19 02:29:21.672017495 +0000 UTC m=+41.687831319 I0219 02:29:21.703864 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-27tl7" condition "Ready" to 2026-02-19 02:29:21.703853067 +0000 UTC m=+41.719666891 I0219 02:29:21.734428 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:29:21.734415619 +0000 UTC m=+41.750229443 I0219 02:29:21.771937 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:31:35.390748 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:31:35.390735 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-02-19 02:31:35.390689066 +0000 UTC m=+175.406502930 I0219 02:31:35.390810 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-02-19 02:31:35.390802978 +0000 UTC m=+175.406616802 E0219 02:31:35.404918 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0219 02:31:35.404987 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-02-19 02:31:35.404979348 +0000 UTC m=+175.420793172 I0219 02:31:35.405025 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0219 02:31:35.406983 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:31:35.407204 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:31:35.407241 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-02-19 02:31:35.407230791 +0000 UTC m=+175.423044645 E0219 02:31:35.416784 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" E0219 02:31:35.417049 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0219 02:31:35.417204 1 sync.go:62] "Error initializing issuer: secret \"valkey-ca\" not found" logger="cert-manager.issuers" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0219 02:31:35.417356 1 controller.go:167] "re-queuing item due to error processing" err="secret \"valkey-ca\" not found" logger="cert-manager.issuers" key="openstack/valkey" I0219 02:31:35.417374 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-02-19 02:31:35.417365287 +0000 UTC m=+175.433179111 I0219 02:31:35.417477 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:31:35.417494 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-02-19 02:31:35.41748776 +0000 UTC m=+175.433301614 I0219 02:31:35.432794 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:31:35.432860 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0219 02:31:35.432879 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-02-19 02:31:35.432872818 +0000 UTC m=+175.448686642 I0219 02:31:35.618938 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:31:35.628427 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-b4zvf" condition "Approved" to 2026-02-19 02:31:35.628411302 +0000 UTC m=+175.644225126 I0219 02:31:35.632965 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-mvsnb" condition "Approved" to 2026-02-19 02:31:35.632958068 +0000 UTC m=+175.648771892 I0219 02:31:35.652406 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-mvsnb" condition "Ready" to 2026-02-19 02:31:35.652394351 +0000 UTC m=+175.668208175 I0219 02:31:35.657490 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-b4zvf" condition "Ready" to 2026-02-19 02:31:35.65747787 +0000 UTC m=+175.673291694 I0219 02:31:35.683383 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:31:35.683362282 +0000 UTC m=+175.699176136 I0219 02:31:35.703205 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:31:35.703738 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:31:35.703728506 +0000 UTC m=+175.719542360 I0219 02:31:35.719106 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0219 02:31:40.417772 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:31:40.417759368 +0000 UTC m=+180.433573212 I0219 02:31:40.434911 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-mvsnb" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:31:40.434900857 +0000 UTC m=+180.450714701 I0219 02:31:40.464933 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-02-19 02:31:40.464915226 +0000 UTC m=+180.480729080 I0219 02:31:40.479701 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again"