I0521 19:34:30.112374 1 start.go:75] "starting controller" logger="cert-manager" version="v1.12.17" git-commit="37b853ff34a6c093e946c657c189f40413c0f628" I0521 19:34:30.112529 1 controller.go:262] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0521 19:34:30.112856 1 client_config.go:618] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0521 19:34:30.116833 1 controller.go:82] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers ingress-shim issuers orders]" logger="cert-manager.controller" I0521 19:34:30.117352 1 controller.go:156] "starting leader election" logger="cert-manager.controller" I0521 19:34:30.117425 1 controller.go:103] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0521 19:34:30.117442 1 controller.go:149] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0521 19:34:30.120107 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0521 19:34:30.176003 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0521 19:34:30.181592 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="gateway-shim" I0521 19:34:30.181839 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0521 19:34:30.186611 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0521 19:34:30.190344 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0521 19:34:30.192784 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0521 19:34:30.195397 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0521 19:34:30.195446 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0521 19:34:30.195457 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0521 19:34:30.195497 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0521 19:34:30.198106 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0521 19:34:30.199934 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0521 19:34:30.202280 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0521 19:34:30.206990 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="orders" I0521 19:34:30.211833 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0521 19:34:30.214517 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0521 19:34:30.214575 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0521 19:34:30.217078 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0521 19:34:30.219510 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0521 19:34:30.222805 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0521 19:34:30.225584 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="issuers" I0521 19:34:30.229429 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="challenges" I0521 19:34:30.233799 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0521 19:34:30.241249 1 controller.go:203] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0521 19:34:30.241318 1 controller.go:226] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0521 19:34:30.244521 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.244526 1 reflector.go:351] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.244802 1 reflector.go:351] Caches populated for *v1.Ingress from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.275425 1 reflector.go:351] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.288054 1 reflector.go:351] Caches populated for *v1.Certificate from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.302057 1 reflector.go:351] Caches populated for *v1.Order from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.331386 1 reflector.go:351] Caches populated for *v1.Challenge from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.335042 1 reflector.go:351] Caches populated for *v1.Secret from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.341776 1 reflector.go:351] Caches populated for *v1.Issuer from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:30.358226 1 reflector.go:351] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.29.7/tools/cache/reflector.go:229 I0521 19:34:45.298913 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-05-21 19:34:45.29889307 +0000 UTC m=+15.231383534 I0521 19:34:46.105651 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:34:46.105702 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-05-21 19:34:46.105692076 +0000 UTC m=+16.038182540 I0521 19:34:46.106731 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-21 19:34:46.106722991 +0000 UTC m=+16.039213465 I0521 19:34:46.123683 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:34:46.123773 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-05-21 19:34:46.123761956 +0000 UTC m=+16.056252400 E0521 19:34:46.124782 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0521 19:34:46.124879 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-05-21 19:34:46.124870604 +0000 UTC m=+16.057361048 E0521 19:34:46.124910 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 19:34:46.139614 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" E0521 19:34:46.140121 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 19:34:46.140448 1 sync.go:62] "error setting up issuer" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 19:34:46.140629 1 controller.go:167] "re-queuing item due to error processing" err="secret \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.clusterissuers" key="atmosphere" I0521 19:34:46.140836 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:34:46.171602 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-zl8m2" condition "Approved" to 2026-05-21 19:34:46.171586418 +0000 UTC m=+16.104076882 I0521 19:34:46.187646 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-zl8m2" condition "Ready" to 2026-05-21 19:34:46.187631368 +0000 UTC m=+16.120121812 I0521 19:34:46.215659 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:34:46.215651897 +0000 UTC m=+16.148142341 I0521 19:34:46.233654 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:34:46.233983 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:34:46.233974714 +0000 UTC m=+16.166465158 I0521 19:34:46.250219 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:34:46.252919 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:34:46.253236 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:34:46.253225993 +0000 UTC m=+16.185716467 I0521 19:34:51.140306 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:34:51.140286862 +0000 UTC m=+21.072777306 I0521 19:35:11.601444 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-05-21 19:35:11.601420457 +0000 UTC m=+41.533910901 I0521 19:35:11.601868 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:35:11.601995 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-21 19:35:11.601983561 +0000 UTC m=+41.534474035 I0521 19:35:11.623913 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-05-21 19:35:11.623898767 +0000 UTC m=+41.556389221 I0521 19:35:11.635063 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:35:11.635230 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:35:11.635297 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-05-21 19:35:11.6352604 +0000 UTC m=+41.567750844 I0521 19:35:12.087571 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-zdt2n" condition "Approved" to 2026-05-21 19:35:12.087554767 +0000 UTC m=+42.020045231 I0521 19:35:12.131587 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-zdt2n" condition "Ready" to 2026-05-21 19:35:12.131573255 +0000 UTC m=+42.064063689 I0521 19:35:12.175800 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:35:12.175785737 +0000 UTC m=+42.108276181 I0521 19:35:12.207828 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:35:12.325970 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:39:49.237443 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-18.nip.io-tls" condition "Ready" to 2026-05-21 19:39:49.237417431 +0000 UTC m=+319.169907895 I0521 19:39:49.238019 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="auth-system/keycloak.199-19-213-18.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:39:49.238056 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-18.nip.io-tls" condition "Issuing" to 2026-05-21 19:39:49.238047456 +0000 UTC m=+319.170537900 I0521 19:39:49.256625 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-18.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-18.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:39:49.256687 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-19-213-18.nip.io-tls" condition "Ready" to 2026-05-21 19:39:49.256681454 +0000 UTC m=+319.189171898 I0521 19:39:49.470798 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="auth-system/keycloak.199-19-213-18.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-18.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:39:49.515339 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-18.nip.io-tls-t5zf9" condition "Approved" to 2026-05-21 19:39:49.515321524 +0000 UTC m=+319.447811988 I0521 19:39:49.555020 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-19-213-18.nip.io-tls-t5zf9" condition "Ready" to 2026-05-21 19:39:49.554989998 +0000 UTC m=+319.487480462 I0521 19:39:49.583385 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-18.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:39:49.583369395 +0000 UTC m=+319.515859869 I0521 19:39:49.612202 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-18.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-18.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:39:49.612652 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-18.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:39:49.612644184 +0000 UTC m=+319.545134628 I0521 19:39:49.631788 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="auth-system/keycloak.199-19-213-18.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-19-213-18.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:39:49.632055 1 conditions.go:192] Found status change for Certificate "keycloak.199-19-213-18.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:39:49.632045681 +0000 UTC m=+319.564536115 I0521 19:40:58.319499 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-05-21 19:40:58.31943283 +0000 UTC m=+388.251923294 I0521 19:40:58.320415 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:40:58.320462 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-21 19:40:58.320454415 +0000 UTC m=+388.252944879 E0521 19:40:58.334740 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0521 19:40:58.334813 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-05-21 19:40:58.33479942 +0000 UTC m=+388.267289894 E0521 19:40:58.334896 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0521 19:40:58.337127 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:40:58.337232 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:40:58.337271 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-05-21 19:40:58.337254801 +0000 UTC m=+388.269745275 E0521 19:40:58.344766 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" E0521 19:40:58.345456 1 setup.go:48] "error getting signing CA TLS certificate" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 19:40:58.345536 1 sync.go:62] "error setting up issuer" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0521 19:40:58.345618 1 controller.go:167] "re-queuing item due to error processing" err="secret \"kube-prometheus-stack-ca\" not found" logger="cert-manager.clusterissuers" key="kube-prometheus-stack" I0521 19:40:58.375360 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:40:58.379409 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jcmwg" condition "Approved" to 2026-05-21 19:40:58.379398805 +0000 UTC m=+388.311889239 I0521 19:40:58.395452 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-jcmwg" condition "Ready" to 2026-05-21 19:40:58.395434222 +0000 UTC m=+388.327924666 I0521 19:40:58.419024 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:40:58.419007316 +0000 UTC m=+388.351497790 I0521 19:40:58.450801 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:40:58.500236 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:03.345524 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:03.34550622 +0000 UTC m=+393.277996694 I0521 19:41:43.680046 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:43.680036 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Ready" to 2026-05-21 19:41:43.680013955 +0000 UTC m=+433.612504379 I0521 19:41:43.680104 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-21 19:41:43.680093997 +0000 UTC m=+433.612584431 I0521 19:41:43.688382 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:43.688409 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-21 19:41:43.688405623 +0000 UTC m=+433.620896047 I0521 19:41:43.690028 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:43.690068 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Issuing" to 2026-05-21 19:41:43.690059834 +0000 UTC m=+433.622550268 I0521 19:41:43.690563 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Ready" to 2026-05-21 19:41:43.690557296 +0000 UTC m=+433.623047730 I0521 19:41:43.690583 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-21 19:41:43.690578467 +0000 UTC m=+433.623068901 I0521 19:41:43.707588 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.707843 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/alertmanager-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:43.707874 1 conditions.go:203] Setting lastTransitionTime for Certificate "alertmanager-tls" condition "Issuing" to 2026-05-21 19:41:43.707866785 +0000 UTC m=+433.640357219 I0521 19:41:43.716990 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.717071 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/grafana-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:43.717099 1 conditions.go:203] Setting lastTransitionTime for Certificate "grafana-tls" condition "Issuing" to 2026-05-21 19:41:43.717091963 +0000 UTC m=+433.649582407 I0521 19:41:43.719026 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.719337 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-tls" condition "Ready" to 2026-05-21 19:41:43.719326568 +0000 UTC m=+433.651817012 I0521 19:41:43.858899 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.868471 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.879823 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-wgwn5" condition "Approved" to 2026-05-21 19:41:43.879804934 +0000 UTC m=+433.812295368 I0521 19:41:43.895981 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fk79v" condition "Approved" to 2026-05-21 19:41:43.895963004 +0000 UTC m=+433.828453448 I0521 19:41:43.901579 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "alertmanager-tls-wgwn5" condition "Ready" to 2026-05-21 19:41:43.901569743 +0000 UTC m=+433.834060187 I0521 19:41:43.916924 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-tls-fk79v" condition "Ready" to 2026-05-21 19:41:43.916909033 +0000 UTC m=+433.849399467 I0521 19:41:43.929113 1 conditions.go:192] Found status change for Certificate "alertmanager-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:43.929096495 +0000 UTC m=+433.861586939 I0521 19:41:43.954997 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.959005 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:43.958986356 +0000 UTC m=+433.891476830 I0521 19:41:43.988768 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:43.989234 1 conditions.go:192] Found status change for Certificate "prometheus-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:43.989224884 +0000 UTC m=+433.921715318 I0521 19:41:44.204298 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:44.554528 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/alertmanager-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"alertmanager-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:44.611450 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-zkf8p" condition "Approved" to 2026-05-21 19:41:44.611397737 +0000 UTC m=+434.543888181 I0521 19:41:44.715738 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "grafana-tls-zkf8p" condition "Ready" to 2026-05-21 19:41:44.715718961 +0000 UTC m=+434.648209415 I0521 19:41:45.156423 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:45.156401046 +0000 UTC m=+435.088891510 I0521 19:41:45.254809 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:45.255380 1 conditions.go:192] Found status change for Certificate "grafana-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:45.255368897 +0000 UTC m=+435.187859371 I0521 19:41:45.506959 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:45.553435 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/grafana-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"grafana-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:51.787860 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" condition "Ready" to 2026-05-21 19:41:51.787834563 +0000 UTC m=+441.720325037 I0521 19:41:51.787984 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:51.788072 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" condition "Issuing" to 2026-05-21 19:41:51.788053378 +0000 UTC m=+441.720543852 I0521 19:41:51.804084 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:51.804177 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:41:51.804201 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" condition "Issuing" to 2026-05-21 19:41:51.804193588 +0000 UTC m=+441.736684022 I0521 19:41:51.901346 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:51.907962 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-c7bs5-8pwv2" condition "Approved" to 2026-05-21 19:41:51.907947019 +0000 UTC m=+441.840437463 I0521 19:41:51.931616 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-c7bs5-8pwv2" condition "Ready" to 2026-05-21 19:41:51.931601965 +0000 UTC m=+441.864092429 I0521 19:41:51.958604 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:51.958585123 +0000 UTC m=+441.891075567 I0521 19:41:51.979749 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:41:51.980626 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:41:51.980613349 +0000 UTC m=+441.913103793 I0521 19:41:52.003544 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-c7bs5-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:42:24.857510 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-05-21 19:42:24.85748638 +0000 UTC m=+474.789976864 I0521 19:42:24.857901 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:42:24.857939 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-21 19:42:24.857928681 +0000 UTC m=+474.790419175 I0521 19:42:24.879975 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:42:24.880137 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:42:24.880181 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-05-21 19:42:24.88016912 +0000 UTC m=+474.812659604 I0521 19:42:25.101584 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:42:25.120241 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-v27qk" condition "Approved" to 2026-05-21 19:42:25.120220571 +0000 UTC m=+475.052711035 I0521 19:42:25.154978 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-v27qk" condition "Ready" to 2026-05-21 19:42:25.154958667 +0000 UTC m=+475.087449111 I0521 19:42:25.194482 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:42:25.194467011 +0000 UTC m=+475.126957455 I0521 19:42:25.225002 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:45:43.345450 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-21 19:45:43.345427079 +0000 UTC m=+673.277917523 I0521 19:45:43.345531 1 trigger_controller.go:194] "Certificate must be re-issued" logger="cert-manager.certificates-trigger" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0521 19:45:43.345637 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-05-21 19:45:43.345625264 +0000 UTC m=+673.278115738 I0521 19:45:43.365692 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-readiness" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:45:43.365775 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-05-21 19:45:43.365765483 +0000 UTC m=+673.298255917 I0521 19:45:43.603759 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:45:43.637816 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-drtv8" condition "Approved" to 2026-05-21 19:45:43.637804299 +0000 UTC m=+673.570294723 I0521 19:45:43.661151 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-drtv8" condition "Ready" to 2026-05-21 19:45:43.661133968 +0000 UTC m=+673.593624442 I0521 19:45:43.699300 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-05-21 19:45:43.699280194 +0000 UTC m=+673.631770668 I0521 19:45:43.727216 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-issuing" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0521 19:45:43.786026 1 controller.go:162] "re-queuing item due to optimistic locking on resource" logger="cert-manager.certificates-key-manager" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again"