I0416 16:46:47.310300 1 controller.go:284] "configured acme dns01 nameservers" logger="cert-manager.controller.build-context" nameservers=["10.96.0.10:53"] W0416 16:46:47.310501 1 client_config.go:659] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work. I0416 16:46:47.323475 1 options.go:259] "enabling the sig-network Gateway API certificate-shim and HTTP-01 solver" logger="cert-manager" I0416 16:46:47.323540 1 controller.go:89] "enabled controllers: [certificaterequests-approver certificaterequests-issuer-acme certificaterequests-issuer-ca certificaterequests-issuer-selfsigned certificaterequests-issuer-vault certificaterequests-issuer-venafi certificates-issuing certificates-key-manager certificates-metrics certificates-readiness certificates-request-manager certificates-revision-manager certificates-trigger challenges clusterissuers gateway-shim ingress-shim issuers orders]" logger="cert-manager.controller" I0416 16:46:47.323562 1 controller.go:435] "serving insecurely as tls certificate data not provided" logger="cert-manager.controller" I0416 16:46:47.323575 1 controller.go:102] "listening for insecure connections" logger="cert-manager.controller" address="0.0.0.0:9402" I0416 16:46:47.324110 1 controller.go:178] "starting leader election" logger="cert-manager.controller" I0416 16:46:47.324154 1 controller.go:127] "starting metrics server" logger="cert-manager.controller" address="[::]:9402" I0416 16:46:47.324173 1 controller.go:171] "starting healthz server" logger="cert-manager.controller" address="[::]:9403" I0416 16:46:47.328569 1 leaderelection.go:250] attempting to acquire leader lease cert-manager/cert-manager-controller... I0416 16:46:47.335906 1 leaderelection.go:260] successfully acquired lease cert-manager/cert-manager-controller I0416 16:46:47.345188 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-vault" I0416 16:46:47.345266 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-venafi" I0416 16:46:47.345272 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="orders" I0416 16:46:47.349624 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="ingress-shim" I0416 16:46:47.355474 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-approver" I0416 16:46:47.358965 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-metrics" I0416 16:46:47.363972 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-request-manager" I0416 16:46:47.370618 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-acme" I0416 16:46:47.370642 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-selfsigned" I0416 16:46:47.370657 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-venafi" I0416 16:46:47.375094 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="gateway-shim" I0416 16:46:47.379374 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-key-manager" I0416 16:46:47.385620 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-readiness" I0416 16:46:47.390905 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-selfsigned" I0416 16:46:47.397513 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="issuers" I0416 16:46:47.402549 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-issuing" I0416 16:46:47.407941 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-trigger" I0416 16:46:47.412140 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-vault" I0416 16:46:47.416038 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="clusterissuers" I0416 16:46:47.420253 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="challenges" I0416 16:46:47.424184 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificates-revision-manager" I0416 16:46:47.430085 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-acme" I0416 16:46:47.433558 1 controller.go:225] "not starting controller as it's disabled" logger="cert-manager.controller" controller="certificatesigningrequests-issuer-ca" I0416 16:46:47.433842 1 controller.go:248] "starting controller" logger="cert-manager.controller" controller="certificaterequests-issuer-ca" I0416 16:46:47.436360 1 reflector.go:359] Caches populated for *v1.Order from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.436982 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437067 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437221 1 reflector.go:359] Caches populated for *v1.Challenge from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437239 1 reflector.go:359] Caches populated for *v1.Ingress from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437448 1 reflector.go:359] Caches populated for *v1.CertificateRequest from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437718 1 reflector.go:359] Caches populated for *v1.PartialObjectMetadata from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437832 1 reflector.go:359] Caches populated for *v1.Issuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437868 1 reflector.go:359] Caches populated for *v1.Secret from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437898 1 reflector.go:359] Caches populated for *v1.HTTPRoute from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437963 1 reflector.go:359] Caches populated for *v1.ClusterIssuer from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.437998 1 reflector.go:359] Caches populated for *v1.Gateway from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:46:47.438321 1 reflector.go:359] Caches populated for *v1.Certificate from k8s.io/client-go@v0.30.1/tools/cache/reflector.go:232 I0416 16:47:02.944775 1 conditions.go:96] Setting lastTransitionTime for Issuer "self-signed" condition "Ready" to 2026-04-16 16:47:02.944748715 +0000 UTC m=+15.659832024 I0416 16:47:03.619131 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Ready" to 2026-04-16 16:47:03.619114654 +0000 UTC m=+16.334197973 I0416 16:47:03.620010 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:47:03.620117 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-16 16:47:03.62010681 +0000 UTC m=+16.335190119 E0416 16:47:03.631732 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 16:47:03.631891 1 conditions.go:96] Setting lastTransitionTime for Issuer "atmosphere" condition "Ready" to 2026-04-16 16:47:03.631879093 +0000 UTC m=+16.346962402 E0416 16:47:03.631988 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 16:47:03.632479 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:03.632644 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/self-signed-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:47:03.632702 1 conditions.go:203] Setting lastTransitionTime for Certificate "self-signed-ca" condition "Issuing" to 2026-04-16 16:47:03.632693685 +0000 UTC m=+16.347777004 E0416 16:47:03.643337 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" E0416 16:47:03.643394 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller.setup" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 16:47:03.643407 1 sync.go:62] "error setting up issuer" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" resource_name="atmosphere" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 16:47:03.643424 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"cert-manager-selfsigned-ca\" not found" logger="cert-manager.controller" key="atmosphere" I0416 16:47:03.665271 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:03.679302 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Approved" to 2026-04-16 16:47:03.679288684 +0000 UTC m=+16.394371993 I0416 16:47:03.711179 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "self-signed-ca-1" condition "Ready" to 2026-04-16 16:47:03.711165002 +0000 UTC m=+16.426248291 I0416 16:47:03.735756 1 conditions.go:192] Found status change for Certificate "self-signed-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:47:03.735741425 +0000 UTC m=+16.450824704 I0416 16:47:03.746180 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/self-signed-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"self-signed-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:08.644548 1 conditions.go:85] Found status change for Issuer "atmosphere" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:47:08.644535883 +0000 UTC m=+21.359619192 I0416 16:47:23.676885 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:47:23.676989 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Issuing" to 2026-04-16 16:47:23.676974984 +0000 UTC m=+36.392058303 I0416 16:47:23.677063 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Ready" to 2026-04-16 16:47:23.677033196 +0000 UTC m=+36.392116505 I0416 16:47:23.688584 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:23.688693 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:47:23.688729 1 conditions.go:203] Setting lastTransitionTime for Certificate "gateway-tls" condition "Issuing" to 2026-04-16 16:47:23.688719077 +0000 UTC m=+36.403802386 I0416 16:47:23.954979 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:23.963849 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "gateway-tls-1" condition "Approved" to 2026-04-16 16:47:23.963828691 +0000 UTC m=+36.678912000 I0416 16:47:23.980530 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "gateway-tls-1" condition "Ready" to 2026-04-16 16:47:23.980514935 +0000 UTC m=+36.695598244 I0416 16:47:24.005545 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:47:24.00553462 +0000 UTC m=+36.720617899 I0416 16:47:24.016059 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:24.016782 1 conditions.go:192] Found status change for Certificate "gateway-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:47:24.016769569 +0000 UTC m=+36.731852858 I0416 16:47:24.027988 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="envoy-gateway-system/gateway-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"gateway-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:31.645575 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:47:31.645658 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready" to 2026-04-16 16:47:31.645638636 +0000 UTC m=+44.360721945 I0416 16:47:31.645776 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-16 16:47:31.645734099 +0000 UTC m=+44.360817418 I0416 16:47:31.655609 1 conditions.go:96] Setting lastTransitionTime for Issuer "rabbitmq-cluster-operator" condition "Ready" to 2026-04-16 16:47:31.655596369 +0000 UTC m=+44.370679668 I0416 16:47:31.670383 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:31.670454 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:47:31.670489 1 conditions.go:203] Setting lastTransitionTime for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Issuing" to 2026-04-16 16:47:31.670480952 +0000 UTC m=+44.385564241 I0416 16:47:31.856393 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:31.866532 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Approved" to 2026-04-16 16:47:31.866519654 +0000 UTC m=+44.581602943 I0416 16:47:31.893733 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rabbitmq-messaging-topology-operator-webhook-1" condition "Ready" to 2026-04-16 16:47:31.893721042 +0000 UTC m=+44.608804331 I0416 16:47:31.917993 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:47:31.917975752 +0000 UTC m=+44.633059071 I0416 16:47:31.932017 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:31.932441 1 conditions.go:192] Found status change for Certificate "rabbitmq-messaging-topology-operator-webhook" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:47:31.932434573 +0000 UTC m=+44.647517852 I0416 16:47:31.948015 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:47:31.962705 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rabbitmq-messaging-topology-operator-webhook" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rabbitmq-messaging-topology-operator-webhook\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:49:20.818316 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:49:20.818370 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-16 16:49:20.818350639 +0000 UTC m=+153.533433958 I0416 16:49:20.818369 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Ready" to 2026-04-16 16:49:20.818318368 +0000 UTC m=+153.533401687 I0416 16:49:20.828536 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:49:20.828630 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:49:20.828664 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-ca" condition "Issuing" to 2026-04-16 16:49:20.828655361 +0000 UTC m=+153.543738650 E0416 16:49:20.828617 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 16:49:20.828931 1 conditions.go:96] Setting lastTransitionTime for Issuer "valkey" condition "Ready" to 2026-04-16 16:49:20.828899948 +0000 UTC m=+153.543983237 I0416 16:49:20.828960 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 16:49:20.835534 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" E0416 16:49:20.835612 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller.setup" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 16:49:20.835633 1 sync.go:62] "Error initializing issuer: secrets \"valkey-ca\" not found" logger="cert-manager.controller" resource_name="valkey" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 16:49:20.835687 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"valkey-ca\" not found" logger="cert-manager.controller" key="openstack/valkey" I0416 16:49:20.838985 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Ready" to 2026-04-16 16:49:20.838976053 +0000 UTC m=+153.554059342 I0416 16:49:20.838994 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:49:20.839236 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-16 16:49:20.83921492 +0000 UTC m=+153.554298209 I0416 16:49:20.853095 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:49:20.853201 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/valkey-server" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:49:20.853231 1 conditions.go:203] Setting lastTransitionTime for Certificate "valkey-server" condition "Issuing" to 2026-04-16 16:49:20.85322231 +0000 UTC m=+153.568305599 I0416 16:49:21.092330 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Approved" to 2026-04-16 16:49:21.092309059 +0000 UTC m=+153.807392378 I0416 16:49:21.106187 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-ca-1" condition "Ready" to 2026-04-16 16:49:21.106177735 +0000 UTC m=+153.821261024 I0416 16:49:21.124721 1 conditions.go:192] Found status change for Certificate "valkey-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:49:21.124713555 +0000 UTC m=+153.839796824 I0416 16:49:21.136622 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:49:21.325688 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:49:21.349003 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Approved" to 2026-04-16 16:49:21.348986793 +0000 UTC m=+154.064070082 I0416 16:49:21.363688 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "valkey-server-1" condition "Ready" to 2026-04-16 16:49:21.363664971 +0000 UTC m=+154.078748250 I0416 16:49:25.836026 1 conditions.go:85] Found status change for Issuer "valkey" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:49:25.83601709 +0000 UTC m=+158.551100369 I0416 16:49:25.849778 1 conditions.go:252] Found status change for CertificateRequest "valkey-server-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:49:25.849765063 +0000 UTC m=+158.564848352 I0416 16:49:25.877439 1 conditions.go:192] Found status change for Certificate "valkey-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:49:25.877417513 +0000 UTC m=+158.592500802 I0416 16:49:25.892706 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:49:25.927925 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/valkey-server" error="Operation cannot be fulfilled on certificates.cert-manager.io \"valkey-server\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:51:58.881747 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready" to 2026-04-16 16:51:58.881716927 +0000 UTC m=+311.596800216 I0416 16:51:58.881836 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-233.nip.io-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:51:58.881910 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Issuing" to 2026-04-16 16:51:58.881899321 +0000 UTC m=+311.596982630 I0416 16:51:58.892858 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:51:58.893012 1 conditions.go:203] Setting lastTransitionTime for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready" to 2026-04-16 16:51:58.893002146 +0000 UTC m=+311.608085455 I0416 16:51:59.010795 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:51:59.043008 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-233.nip.io-tls-1" condition "Approved" to 2026-04-16 16:51:59.042992272 +0000 UTC m=+311.758075581 I0416 16:51:59.056743 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keycloak.199-204-45-233.nip.io-tls-1" condition "Ready" to 2026-04-16 16:51:59.056729947 +0000 UTC m=+311.771813236 I0416 16:51:59.075396 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:51:59.075383512 +0000 UTC m=+311.790466801 I0416 16:51:59.094261 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:51:59.094899 1 conditions.go:192] Found status change for Certificate "keycloak.199-204-45-233.nip.io-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:51:59.094890351 +0000 UTC m=+311.809973640 I0416 16:51:59.109977 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:51:59.110079 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="auth-system/keycloak.199-204-45-233.nip.io-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keycloak.199-204-45-233.nip.io-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:01.783540 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-16 16:53:01.783504554 +0000 UTC m=+374.498587843 I0416 16:53:01.783603 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:53:01.783648 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Issuing" to 2026-04-16 16:53:01.783644018 +0000 UTC m=+374.498727307 I0416 16:53:01.795755 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:01.795861 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-ca" condition "Ready" to 2026-04-16 16:53:01.795849101 +0000 UTC m=+374.510932380 E0416 16:53:01.795911 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" I0416 16:53:01.796040 1 conditions.go:96] Setting lastTransitionTime for Issuer "kube-prometheus-stack" condition "Ready" to 2026-04-16 16:53:01.796028306 +0000 UTC m=+374.511111605 E0416 16:53:01.796071 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 16:53:01.807126 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" E0416 16:53:01.807290 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller.setup" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 16:53:01.807389 1 sync.go:62] "error setting up issuer" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" resource_name="kube-prometheus-stack" resource_namespace="" resource_kind="ClusterIssuer" resource_version="v1" E0416 16:53:01.807460 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"kube-prometheus-stack-ca\" not found" logger="cert-manager.controller" key="kube-prometheus-stack" I0416 16:53:01.809280 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:01.829195 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Approved" to 2026-04-16 16:53:01.829178085 +0000 UTC m=+374.544261374 I0416 16:53:01.844429 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-ca-1" condition "Ready" to 2026-04-16 16:53:01.84441016 +0000 UTC m=+374.559493469 I0416 16:53:01.863814 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:53:01.863800564 +0000 UTC m=+374.578883873 I0416 16:53:01.876457 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:01.876754 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:53:01.876742757 +0000 UTC m=+374.591826046 I0416 16:53:01.889918 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager/kube-prometheus-stack-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:06.808162 1 conditions.go:85] Found status change for Issuer "kube-prometheus-stack" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:53:06.808146599 +0000 UTC m=+379.523229918 I0416 16:53:49.981735 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" condition "Ready" to 2026-04-16 16:53:49.981703115 +0000 UTC m=+422.696786404 I0416 16:53:49.982444 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:53:49.982519 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" condition "Issuing" to 2026-04-16 16:53:49.982514067 +0000 UTC m=+422.697597356 I0416 16:53:49.993337 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:49.993425 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:53:49.993463 1 conditions.go:203] Setting lastTransitionTime for Certificate "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" condition "Issuing" to 2026-04-16 16:53:49.993457927 +0000 UTC m=+422.708541216 I0416 16:53:50.264376 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls-1" condition "Approved" to 2026-04-16 16:53:50.264362333 +0000 UTC m=+422.979445642 I0416 16:53:50.280469 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls-1" condition "Ready" to 2026-04-16 16:53:50.28045883 +0000 UTC m=+422.995542119 I0416 16:53:50.300958 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:53:50.300944094 +0000 UTC m=+423.016027383 I0416 16:53:50.312847 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:50.313239 1 conditions.go:192] Found status change for Certificate "kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:53:50.31323354 +0000 UTC m=+423.028316819 I0416 16:53:50.323078 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:53:50.326148 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"kube-prometheus-stack-prometheus-node-exporter-rj4nq-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:54:03.019671 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready" to 2026-04-16 16:54:03.019655813 +0000 UTC m=+435.734739102 I0416 16:54:03.019679 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:54:03.019968 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-16 16:54:03.019958711 +0000 UTC m=+435.735041990 I0416 16:54:03.032275 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:54:03.032354 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:54:03.032407 1 conditions.go:203] Setting lastTransitionTime for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Issuing" to 2026-04-16 16:54:03.032399001 +0000 UTC m=+435.747482300 I0416 16:54:03.388439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Approved" to 2026-04-16 16:54:03.388426523 +0000 UTC m=+436.103509812 I0416 16:54:03.406492 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "prometheus-kube-prometheus-stack-prometheus-0-tls-1" condition "Ready" to 2026-04-16 16:54:03.406477763 +0000 UTC m=+436.121561072 I0416 16:54:03.435102 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:54:03.435087763 +0000 UTC m=+436.150171082 I0416 16:54:03.450771 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:54:03.451570 1 conditions.go:192] Found status change for Certificate "prometheus-kube-prometheus-stack-prometheus-0-tls" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:54:03.451561371 +0000 UTC m=+436.166644680 I0416 16:54:03.469897 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="monitoring/prometheus-kube-prometheus-stack-prometheus-0-tls" error="Operation cannot be fulfilled on certificates.cert-manager.io \"prometheus-kube-prometheus-stack-prometheus-0-tls\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:57:53.733847 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/keystone-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 16:57:53.733932 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Issuing" to 2026-04-16 16:57:53.733922345 +0000 UTC m=+666.449005664 I0416 16:57:53.733891 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-16 16:57:53.733853773 +0000 UTC m=+666.448937062 I0416 16:57:53.746533 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:57:53.746636 1 conditions.go:203] Setting lastTransitionTime for Certificate "keystone-api-certs" condition "Ready" to 2026-04-16 16:57:53.746625646 +0000 UTC m=+666.461708935 I0416 16:57:54.019319 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:57:54.062205 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Approved" to 2026-04-16 16:57:54.062190277 +0000 UTC m=+666.777273596 I0416 16:57:54.082032 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "keystone-api-certs-1" condition "Ready" to 2026-04-16 16:57:54.082018194 +0000 UTC m=+666.797101543 I0416 16:57:54.108144 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:57:54.108134457 +0000 UTC m=+666.823217746 I0416 16:57:54.126302 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:57:54.126629 1 conditions.go:192] Found status change for Certificate "keystone-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 16:57:54.126623789 +0000 UTC m=+666.841707068 I0416 16:57:54.138206 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 16:57:54.146252 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/keystone-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"keystone-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:00:20.975782 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Ready" to 2026-04-16 17:00:20.97576237 +0000 UTC m=+813.690845659 I0416 17:00:20.976090 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:00:20.976123 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-16 17:00:20.97611947 +0000 UTC m=+813.691202759 I0416 17:00:20.986150 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:00:20.986199 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/barbican-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:00:20.986212 1 conditions.go:203] Setting lastTransitionTime for Certificate "barbican-api-certs" condition "Issuing" to 2026-04-16 17:00:20.986208034 +0000 UTC m=+813.701291323 I0416 17:00:21.133796 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:00:21.149174 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Approved" to 2026-04-16 17:00:21.149162547 +0000 UTC m=+813.864245826 I0416 17:00:21.164622 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "barbican-api-certs-1" condition "Ready" to 2026-04-16 17:00:21.164606081 +0000 UTC m=+813.879689370 I0416 17:00:21.192141 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:00:21.192125613 +0000 UTC m=+813.907208902 I0416 17:00:21.209390 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:00:21.210015 1 conditions.go:192] Found status change for Certificate "barbican-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:00:21.210005652 +0000 UTC m=+813.925088941 I0416 17:00:21.222874 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:00:21.223898 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/barbican-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"barbican-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:01:44.472157 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:01:44.472284 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-16 17:01:44.472266782 +0000 UTC m=+897.187350051 I0416 17:01:44.472310 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready" to 2026-04-16 17:01:44.472297282 +0000 UTC m=+897.187380561 I0416 17:01:44.481904 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:01:44.482069 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:01:44.482103 1 conditions.go:203] Setting lastTransitionTime for Certificate "rook-ceph-rgw-ceph-certs" condition "Issuing" to 2026-04-16 17:01:44.482094445 +0000 UTC m=+897.197177734 I0416 17:01:44.730281 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:01:44.741856 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Approved" to 2026-04-16 17:01:44.741843644 +0000 UTC m=+897.456926933 I0416 17:01:44.756134 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "rook-ceph-rgw-ceph-certs-1" condition "Ready" to 2026-04-16 17:01:44.756117176 +0000 UTC m=+897.471200465 I0416 17:01:44.783651 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:01:44.783636143 +0000 UTC m=+897.498719422 I0416 17:01:44.797830 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:01:44.799205 1 conditions.go:192] Found status change for Certificate "rook-ceph-rgw-ceph-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:01:44.79918607 +0000 UTC m=+897.514269389 I0416 17:01:44.806273 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:01:44.815256 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/rook-ceph-rgw-ceph-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"rook-ceph-rgw-ceph-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:04:56.542357 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/glance-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:04:56.542428 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Issuing" to 2026-04-16 17:04:56.542403837 +0000 UTC m=+1089.257487116 I0416 17:04:56.542685 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-16 17:04:56.542680504 +0000 UTC m=+1089.257763783 I0416 17:04:56.552894 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:04:56.553010 1 conditions.go:203] Setting lastTransitionTime for Certificate "glance-api-certs" condition "Ready" to 2026-04-16 17:04:56.552997788 +0000 UTC m=+1089.268081107 I0416 17:04:56.701646 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:04:56.732568 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Approved" to 2026-04-16 17:04:56.732547595 +0000 UTC m=+1089.447630914 I0416 17:04:56.751596 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "glance-api-certs-1" condition "Ready" to 2026-04-16 17:04:56.75158471 +0000 UTC m=+1089.466667989 I0416 17:04:56.779811 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:04:56.779798159 +0000 UTC m=+1089.494881448 I0416 17:04:56.801670 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:04:56.802428 1 conditions.go:192] Found status change for Certificate "glance-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:04:56.802418869 +0000 UTC m=+1089.517502188 I0416 17:04:56.821904 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/glance-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"glance-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:11:07.017885 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Ready" to 2026-04-16 17:11:07.017834987 +0000 UTC m=+1459.732918316 I0416 17:11:07.018106 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:11:07.018346 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-04-16 17:11:07.01833491 +0000 UTC m=+1459.733418239 I0416 17:11:07.030365 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:11:07.030552 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/cinder-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:11:07.030593 1 conditions.go:203] Setting lastTransitionTime for Certificate "cinder-api-certs" condition "Issuing" to 2026-04-16 17:11:07.030581029 +0000 UTC m=+1459.745664308 I0416 17:11:07.173965 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:11:07.189109 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Approved" to 2026-04-16 17:11:07.189096656 +0000 UTC m=+1459.904179935 I0416 17:11:07.202236 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "cinder-api-certs-1" condition "Ready" to 2026-04-16 17:11:07.202223679 +0000 UTC m=+1459.917306968 I0416 17:11:07.224225 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:11:07.224204499 +0000 UTC m=+1459.939287798 I0416 17:11:07.237364 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:11:07.238179 1 conditions.go:192] Found status change for Certificate "cinder-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:11:07.238168214 +0000 UTC m=+1459.953251503 I0416 17:11:07.258310 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/cinder-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"cinder-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:12:51.331990 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:12:51.332348 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-04-16 17:12:51.332038885 +0000 UTC m=+1564.047122194 I0416 17:12:51.332449 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Ready" to 2026-04-16 17:12:51.331785618 +0000 UTC m=+1564.046868937 I0416 17:12:51.345140 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:12:51.345231 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/placement-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:12:51.345257 1 conditions.go:203] Setting lastTransitionTime for Certificate "placement-api-certs" condition "Issuing" to 2026-04-16 17:12:51.345250238 +0000 UTC m=+1564.060333527 I0416 17:12:51.513280 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Approved" to 2026-04-16 17:12:51.513264948 +0000 UTC m=+1564.228348227 I0416 17:12:51.533826 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "placement-api-certs-1" condition "Ready" to 2026-04-16 17:12:51.533811917 +0000 UTC m=+1564.248895206 I0416 17:12:51.555912 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:12:51.555895987 +0000 UTC m=+1564.270979276 I0416 17:12:51.571468 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:12:51.572065 1 conditions.go:192] Found status change for Certificate "placement-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:12:51.572057979 +0000 UTC m=+1564.287141268 I0416 17:12:51.585754 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/placement-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"placement-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.129232 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:13:58.129237 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-16 17:13:58.129214611 +0000 UTC m=+1630.844297940 I0416 17:13:58.129291 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Issuing" to 2026-04-16 17:13:58.129282293 +0000 UTC m=+1630.844365582 I0416 17:13:58.143420 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.144431 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-16 17:13:58.144418028 +0000 UTC m=+1630.859501357 I0416 17:13:58.157047 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.157133 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-16 17:13:58.157123667 +0000 UTC m=+1630.872206946 I0416 17:13:58.158593 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.165748 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Approved" to 2026-04-16 17:13:58.165731327 +0000 UTC m=+1630.880814606 I0416 17:13:58.169140 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-vnc-ca" condition "Ready" to 2026-04-16 17:13:58.169130998 +0000 UTC m=+1630.884214287 I0416 17:13:58.178193 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.183104 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-vnc-ca-1" condition "Ready" to 2026-04-16 17:13:58.183093041 +0000 UTC m=+1630.898176320 I0416 17:13:58.208297 1 conditions.go:192] Found status change for Certificate "libvirt-vnc-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:13:58.208283984 +0000 UTC m=+1630.923367263 I0416 17:13:58.227023 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.267095 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-vnc-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-vnc-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.765976 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-16 17:13:58.765951674 +0000 UTC m=+1631.481034963 I0416 17:13:58.766161 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-api-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:13:58.766223 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Issuing" to 2026-04-16 17:13:58.76620819 +0000 UTC m=+1631.481291509 I0416 17:13:58.779552 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.779625 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-api-ca" condition "Ready" to 2026-04-16 17:13:58.779616859 +0000 UTC m=+1631.494700148 I0416 17:13:58.793795 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.822620 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Approved" to 2026-04-16 17:13:58.822594177 +0000 UTC m=+1631.537677486 I0416 17:13:58.837968 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-api-ca-1" condition "Ready" to 2026-04-16 17:13:58.837952197 +0000 UTC m=+1631.553035496 I0416 17:13:58.860316 1 conditions.go:192] Found status change for Certificate "libvirt-api-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:13:58.860298634 +0000 UTC m=+1631.575381923 I0416 17:13:58.873514 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:58.913422 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-api-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-api-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:13:59.503000 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-vnc" condition "Ready" to 2026-04-16 17:13:59.502988265 +0000 UTC m=+1632.218071554 I0416 17:14:00.162863 1 conditions.go:96] Setting lastTransitionTime for Issuer "libvirt-api" condition "Ready" to 2026-04-16 17:14:00.162847965 +0000 UTC m=+1632.877931274 I0416 17:14:43.548401 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Ready" to 2026-04-16 17:14:43.54836595 +0000 UTC m=+1676.263449229 I0416 17:14:43.548709 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:14:43.548730 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-04-16 17:14:43.548724 +0000 UTC m=+1676.263807279 I0416 17:14:43.567090 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:14:43.568329 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:14:43.568387 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-vencrypt" condition "Issuing" to 2026-04-16 17:14:43.568377425 +0000 UTC m=+1676.283460714 I0416 17:14:46.544850 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Approved" to 2026-04-16 17:14:46.544835357 +0000 UTC m=+1679.259918646 I0416 17:14:46.560132 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-vencrypt-1" condition "Ready" to 2026-04-16 17:14:46.560120326 +0000 UTC m=+1679.275203615 I0416 17:14:46.587935 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:14:46.587920638 +0000 UTC m=+1679.303003927 I0416 17:14:46.599010 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:14:46.600922 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-vencrypt" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:14:46.600911256 +0000 UTC m=+1679.315994545 I0416 17:14:46.606689 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:14:46.614894 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-vencrypt" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-vencrypt\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:23.486458 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:17:23.486605 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Issuing" to 2026-04-16 17:17:23.48655232 +0000 UTC m=+1836.201635639 I0416 17:17:23.486784 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-04-16 17:17:23.486773636 +0000 UTC m=+1836.201856955 I0416 17:17:23.498815 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:23.498998 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-api-certs" condition "Ready" to 2026-04-16 17:17:23.498930533 +0000 UTC m=+1836.214013852 I0416 17:17:23.663799 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:23.700630 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Approved" to 2026-04-16 17:17:23.70060573 +0000 UTC m=+1836.415689039 I0416 17:17:23.718209 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-api-certs-1" condition "Ready" to 2026-04-16 17:17:23.718190174 +0000 UTC m=+1836.433273483 I0416 17:17:23.750990 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:17:23.750972206 +0000 UTC m=+1836.466055495 I0416 17:17:23.768752 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:23.769383 1 conditions.go:192] Found status change for Certificate "nova-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:17:23.769374931 +0000 UTC m=+1836.484458220 I0416 17:17:23.788971 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:30.622696 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Ready" to 2026-04-16 17:17:30.622676734 +0000 UTC m=+1843.337760023 I0416 17:17:30.623572 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:17:30.623663 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-04-16 17:17:30.62365217 +0000 UTC m=+1843.338735479 I0416 17:17:30.638754 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:30.638836 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:17:30.638864 1 conditions.go:203] Setting lastTransitionTime for Certificate "nova-novncproxy-certs" condition "Issuing" to 2026-04-16 17:17:30.638857789 +0000 UTC m=+1843.353941068 I0416 17:17:30.765282 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Approved" to 2026-04-16 17:17:30.765255791 +0000 UTC m=+1843.480339080 I0416 17:17:30.780376 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "nova-novncproxy-certs-1" condition "Ready" to 2026-04-16 17:17:30.780355137 +0000 UTC m=+1843.495438426 I0416 17:17:30.808449 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:17:30.808432323 +0000 UTC m=+1843.523515612 I0416 17:17:30.822453 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:17:30.823198 1 conditions.go:192] Found status change for Certificate "nova-novncproxy-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:17:30.82318291 +0000 UTC m=+1843.538266239 I0416 17:17:30.846939 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/nova-novncproxy-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"nova-novncproxy-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:20:35.691058 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Ready" to 2026-04-16 17:20:35.691028879 +0000 UTC m=+2028.406112168 I0416 17:20:35.691095 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:20:35.691276 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-04-16 17:20:35.691265415 +0000 UTC m=+2028.406348694 I0416 17:20:35.701460 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:20:35.701600 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/neutron-server-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:20:35.701636 1 conditions.go:203] Setting lastTransitionTime for Certificate "neutron-server-certs" condition "Issuing" to 2026-04-16 17:20:35.701625943 +0000 UTC m=+2028.416709232 I0416 17:20:35.898422 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:20:35.918262 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Approved" to 2026-04-16 17:20:35.91823581 +0000 UTC m=+2028.633319119 I0416 17:20:35.937027 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "neutron-server-certs-1" condition "Ready" to 2026-04-16 17:20:35.937011523 +0000 UTC m=+2028.652094812 I0416 17:20:35.975232 1 conditions.go:192] Found status change for Certificate "neutron-server-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:20:35.975211038 +0000 UTC m=+2028.690294317 I0416 17:20:35.993106 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:20:36.045145 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/neutron-server-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"neutron-server-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.373854 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-api" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:21:27.373944 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-6gm4w-api" condition "Issuing" to 2026-04-16 17:21:27.373934103 +0000 UTC m=+2080.089017392 I0416 17:21:27.374085 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-vnc" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:21:27.374161 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-6gm4w-vnc" condition "Issuing" to 2026-04-16 17:21:27.374146319 +0000 UTC m=+2080.089229608 I0416 17:21:27.374133 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-6gm4w-api" condition "Ready" to 2026-04-16 17:21:27.374001985 +0000 UTC m=+2080.089085314 I0416 17:21:27.374825 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-6gm4w-vnc" condition "Ready" to 2026-04-16 17:21:27.374808577 +0000 UTC m=+2080.089891866 I0416 17:21:27.388540 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.388566 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-api\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.388782 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-6gm4w-api" condition "Ready" to 2026-04-16 17:21:27.388771151 +0000 UTC m=+2080.103854430 I0416 17:21:27.389456 1 conditions.go:203] Setting lastTransitionTime for Certificate "libvirt-libvirt-default-6gm4w-vnc" condition "Ready" to 2026-04-16 17:21:27.389451009 +0000 UTC m=+2080.104534288 I0416 17:21:27.613481 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.641798 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-6gm4w-vnc-1" condition "Approved" to 2026-04-16 17:21:27.641780864 +0000 UTC m=+2080.356864153 I0416 17:21:27.642160 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-api\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.662240 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-6gm4w-vnc-1" condition "Ready" to 2026-04-16 17:21:27.662227752 +0000 UTC m=+2080.377311041 I0416 17:21:27.673432 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-6gm4w-api-1" condition "Approved" to 2026-04-16 17:21:27.673413412 +0000 UTC m=+2080.388496701 I0416 17:21:27.688616 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "libvirt-libvirt-default-6gm4w-api-1" condition "Ready" to 2026-04-16 17:21:27.688600859 +0000 UTC m=+2080.403684148 I0416 17:21:27.693589 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-6gm4w-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:21:27.693574692 +0000 UTC m=+2080.408657971 I0416 17:21:27.707939 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.708631 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-6gm4w-vnc" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:21:27.708620296 +0000 UTC m=+2080.423703585 I0416 17:21:27.714280 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-6gm4w-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:21:27.714273287 +0000 UTC m=+2080.429356576 I0416 17:21:27.734231 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-vnc" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-vnc\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.734300 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-api\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.735492 1 conditions.go:192] Found status change for Certificate "libvirt-libvirt-default-6gm4w-api" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:21:27.735480656 +0000 UTC m=+2080.450563935 I0416 17:21:27.750005 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-api\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:21:27.757304 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/libvirt-libvirt-default-6gm4w-api" error="Operation cannot be fulfilled on certificates.cert-manager.io \"libvirt-libvirt-default-6gm4w-api\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:00.718696 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Ready" to 2026-04-16 17:25:00.718669259 +0000 UTC m=+2293.433752538 I0416 17:25:00.719111 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:25:00.719166 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-04-16 17:25:00.719153822 +0000 UTC m=+2293.434237101 I0416 17:25:00.730015 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:00.730132 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:25:00.730165 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-api-certs" condition "Issuing" to 2026-04-16 17:25:00.730154717 +0000 UTC m=+2293.445238006 I0416 17:25:00.872931 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:00.889922 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Approved" to 2026-04-16 17:25:00.889907791 +0000 UTC m=+2293.604991080 I0416 17:25:00.916243 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-api-certs-1" condition "Ready" to 2026-04-16 17:25:00.916230257 +0000 UTC m=+2293.631313536 I0416 17:25:00.940181 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:25:00.940169859 +0000 UTC m=+2293.655253128 I0416 17:25:00.960526 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:00.960964 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:25:00.960957637 +0000 UTC m=+2293.676040916 I0416 17:25:00.974089 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:00.974479 1 conditions.go:192] Found status change for Certificate "heat-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:25:00.974470589 +0000 UTC m=+2293.689553868 I0416 17:25:08.519745 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Ready" to 2026-04-16 17:25:08.519723962 +0000 UTC m=+2301.234807261 I0416 17:25:08.519722 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:25:08.519915 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-04-16 17:25:08.519900216 +0000 UTC m=+2301.234983505 I0416 17:25:08.531551 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:08.531709 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/heat-cfn-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:25:08.531761 1 conditions.go:203] Setting lastTransitionTime for Certificate "heat-cfn-certs" condition "Issuing" to 2026-04-16 17:25:08.531750914 +0000 UTC m=+2301.246834203 I0416 17:25:08.734328 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:08.748991 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Approved" to 2026-04-16 17:25:08.748624751 +0000 UTC m=+2301.463708040 I0416 17:25:08.766145 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "heat-cfn-certs-1" condition "Ready" to 2026-04-16 17:25:08.76613004 +0000 UTC m=+2301.481213329 I0416 17:25:08.786163 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:25:08.786150867 +0000 UTC m=+2301.501234156 I0416 17:25:08.801358 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:25:08.801887 1 conditions.go:192] Found status change for Certificate "heat-cfn-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:25:08.801879538 +0000 UTC m=+2301.516962817 I0416 17:25:08.826732 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/heat-cfn-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"heat-cfn-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:24.679559 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:27:24.679617 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-04-16 17:27:24.679604775 +0000 UTC m=+2437.394688094 I0416 17:27:24.679886 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Ready" to 2026-04-16 17:27:24.679857602 +0000 UTC m=+2437.394940921 E0416 17:27:24.692828 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 17:27:24.692993 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-client" condition "Ready" to 2026-04-16 17:27:24.692984514 +0000 UTC m=+2437.408067833 I0416 17:27:24.693024 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 17:27:24.694451 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:24.694733 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:27:24.694777 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-ca" condition "Issuing" to 2026-04-16 17:27:24.694769282 +0000 UTC m=+2437.409852601 E0416 17:27:24.702476 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" E0416 17:27:24.702839 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 17:27:24.702899 1 sync.go:62] "Error initializing issuer: secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" resource_name="octavia-client" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 17:27:24.702976 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-client-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-client" I0416 17:27:24.747872 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Approved" to 2026-04-16 17:27:24.747848866 +0000 UTC m=+2437.462932155 I0416 17:27:24.763571 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-ca-1" condition "Ready" to 2026-04-16 17:27:24.763555277 +0000 UTC m=+2437.478638566 I0416 17:27:24.786661 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:24.786652256 +0000 UTC m=+2437.501735545 I0416 17:27:24.806430 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:24.806847 1 conditions.go:192] Found status change for Certificate "octavia-client-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:24.806839668 +0000 UTC m=+2437.521922977 I0416 17:27:24.818265 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:24.823921 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:25.362089 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Ready" to 2026-04-16 17:27:25.362066218 +0000 UTC m=+2438.077149537 I0416 17:27:25.362125 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:27:25.362178 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-04-16 17:27:25.362162451 +0000 UTC m=+2438.077245760 I0416 17:27:25.375102 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:25.375232 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-server-ca" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:27:25.375265 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-server-ca" condition "Issuing" to 2026-04-16 17:27:25.375254132 +0000 UTC m=+2438.090337421 E0416 17:27:25.377129 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 17:27:25.377196 1 conditions.go:96] Setting lastTransitionTime for Issuer "octavia-server" condition "Ready" to 2026-04-16 17:27:25.377183274 +0000 UTC m=+2438.092266583 I0416 17:27:25.377271 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 17:27:25.389242 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" E0416 17:27:25.392392 1 setup.go:48] "error getting signing CA TLS certificate" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller.setup" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" I0416 17:27:25.392783 1 sync.go:62] "Error initializing issuer: secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" resource_name="octavia-server" resource_namespace="openstack" resource_kind="Issuer" resource_version="v1" E0416 17:27:25.392884 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"octavia-server-ca\" not found" logger="cert-manager.controller" key="openstack/octavia-server" I0416 17:27:25.420080 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Approved" to 2026-04-16 17:27:25.420062313 +0000 UTC m=+2438.135145602 I0416 17:27:25.433287 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-server-ca-1" condition "Ready" to 2026-04-16 17:27:25.433272228 +0000 UTC m=+2438.148355517 I0416 17:27:25.458681 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:25.458663899 +0000 UTC m=+2438.173747188 I0416 17:27:25.469446 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:25.469762 1 conditions.go:192] Found status change for Certificate "octavia-server-ca" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:25.469743766 +0000 UTC m=+2438.184827055 I0416 17:27:25.481027 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-server-ca" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-server-ca\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:26.087497 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-client-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:27:26.087523 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-04-16 17:27:26.087499754 +0000 UTC m=+2438.802583063 I0416 17:27:26.087572 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Issuing" to 2026-04-16 17:27:26.087556955 +0000 UTC m=+2438.802640264 I0416 17:27:26.099386 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:26.099521 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-client-certs" condition "Ready" to 2026-04-16 17:27:26.099510326 +0000 UTC m=+2438.814593645 I0416 17:27:26.116211 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:26.143105 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Approved" to 2026-04-16 17:27:26.143082544 +0000 UTC m=+2438.858165823 I0416 17:27:26.157975 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-client-certs-1" condition "Ready" to 2026-04-16 17:27:26.157961033 +0000 UTC m=+2438.873044322 I0416 17:27:29.703482 1 conditions.go:85] Found status change for Issuer "octavia-client" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:29.703467198 +0000 UTC m=+2442.418550507 I0416 17:27:29.716122 1 conditions.go:252] Found status change for CertificateRequest "octavia-client-certs-1" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:29.716108447 +0000 UTC m=+2442.431191736 I0416 17:27:29.739436 1 conditions.go:192] Found status change for Certificate "octavia-client-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:29.739425983 +0000 UTC m=+2442.454509272 I0416 17:27:29.756522 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:29.767314 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-client-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-client-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:27:30.390213 1 conditions.go:85] Found status change for Issuer "octavia-server" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:27:30.390198805 +0000 UTC m=+2443.105282094 I0416 17:29:55.405820 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:29:55.405856 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-04-16 17:29:55.405848335 +0000 UTC m=+2588.120931614 I0416 17:29:55.405843 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Ready" to 2026-04-16 17:29:55.405801824 +0000 UTC m=+2588.120885113 I0416 17:29:55.417188 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:29:55.417265 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/octavia-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:29:55.417288 1 conditions.go:203] Setting lastTransitionTime for Certificate "octavia-api-certs" condition "Issuing" to 2026-04-16 17:29:55.417279921 +0000 UTC m=+2588.132363210 I0416 17:29:55.682406 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:29:55.694539 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Approved" to 2026-04-16 17:29:55.69452438 +0000 UTC m=+2588.409607669 I0416 17:29:55.710662 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "octavia-api-certs-1" condition "Ready" to 2026-04-16 17:29:55.71064787 +0000 UTC m=+2588.425731149 I0416 17:29:55.731635 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:29:55.731621249 +0000 UTC m=+2588.446704518 I0416 17:29:55.751731 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:29:55.752391 1 conditions.go:192] Found status change for Certificate "octavia-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:29:55.752381964 +0000 UTC m=+2588.467465253 I0416 17:29:55.772364 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:29:55.772410 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:29:55.776684 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/octavia-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"octavia-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:48.241240 1 conditions.go:96] Setting lastTransitionTime for Issuer "test-selfsigned" condition "Ready" to 2026-04-16 17:30:48.241218171 +0000 UTC m=+2640.956301480 I0416 17:30:48.260808 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:48.260864 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-16 17:30:48.260849835 +0000 UTC m=+2640.975933154 I0416 17:30:48.261036 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Ready" to 2026-04-16 17:30:48.26100745 +0000 UTC m=+2640.976090769 I0416 17:30:48.271703 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"selfsigned-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:48.271819 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:48.271879 1 conditions.go:203] Setting lastTransitionTime for Certificate "selfsigned-cert" condition "Issuing" to 2026-04-16 17:30:48.271870559 +0000 UTC m=+2640.986953878 E0416 17:30:48.295446 1 controller.go:134] "issuer in work queue no longer exists" err="issuer.cert-manager.io \"test-selfsigned\" not found" logger="cert-manager.controller" I0416 17:30:48.354800 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-selfsigned-issuer" condition "Ready" to 2026-04-16 17:30:48.354778182 +0000 UTC m=+2641.069861461 I0416 17:30:48.372820 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Ready" to 2026-04-16 17:30:48.372800523 +0000 UTC m=+2641.087883812 I0416 17:30:48.372977 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:48.373026 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-16 17:30:48.373014989 +0000 UTC m=+2641.088098268 I0416 17:30:48.389196 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:48.389318 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-system/capi-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:48.389351 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-serving-cert" condition "Issuing" to 2026-04-16 17:30:48.389345054 +0000 UTC m=+2641.104428343 E0416 17:30:48.493266 1 controller.go:162] "re-queuing item due to error processing" err="secrets \"selfsigned-cert-\" is forbidden: unable to create new content in namespace cert-manager-test because it is being terminated" logger="cert-manager.controller" key="cert-manager-test/selfsigned-cert" I0416 17:30:48.774490 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:48.793918 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Approved" to 2026-04-16 17:30:48.793897831 +0000 UTC m=+2641.508981120 I0416 17:30:48.819737 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-serving-cert-1" condition "Ready" to 2026-04-16 17:30:48.81972007 +0000 UTC m=+2641.534803359 I0416 17:30:48.843804 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:48.843793373 +0000 UTC m=+2641.558876652 I0416 17:30:48.859539 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:48.860333 1 conditions.go:192] Found status change for Certificate "capi-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:48.860317473 +0000 UTC m=+2641.575400752 I0416 17:30:48.890555 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-system/capi-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.136850 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-bootstrap-selfsigned-issuer" condition "Ready" to 2026-04-16 17:30:49.136833703 +0000 UTC m=+2641.851916992 I0416 17:30:49.162384 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:49.162414 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-16 17:30:49.162408456 +0000 UTC m=+2641.877491745 I0416 17:30:49.162602 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready" to 2026-04-16 17:30:49.16258473 +0000 UTC m=+2641.877667999 I0416 17:30:49.181984 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.182107 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:49.182148 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Issuing" to 2026-04-16 17:30:49.182135842 +0000 UTC m=+2641.897219151 I0416 17:30:49.654952 1 conditions.go:96] Setting lastTransitionTime for Issuer "capi-kubeadm-control-plane-selfsigned-issuer" condition "Ready" to 2026-04-16 17:30:49.65493267 +0000 UTC m=+2642.370015939 I0416 17:30:49.675826 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-16 17:30:49.675796517 +0000 UTC m=+2642.390879796 I0416 17:30:49.675921 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:49.676035 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Issuing" to 2026-04-16 17:30:49.676023193 +0000 UTC m=+2642.391106502 I0416 17:30:49.693232 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.693318 1 conditions.go:203] Setting lastTransitionTime for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready" to 2026-04-16 17:30:49.693310724 +0000 UTC m=+2642.408394033 I0416 17:30:49.760939 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.790256 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Approved" to 2026-04-16 17:30:49.790241041 +0000 UTC m=+2642.505324330 I0416 17:30:49.808404 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-control-plane-serving-cert-1" condition "Ready" to 2026-04-16 17:30:49.808388865 +0000 UTC m=+2642.523472154 I0416 17:30:49.848529 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:49.848508126 +0000 UTC m=+2642.563591395 I0416 17:30:49.882434 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.882854 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-control-plane-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:49.882846992 +0000 UTC m=+2642.597930271 I0416 17:30:49.883556 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.888263 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:49.888505 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Approved" to 2026-04-16 17:30:49.888496913 +0000 UTC m=+2642.603580182 I0416 17:30:49.925905 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capi-kubeadm-bootstrap-serving-cert-1" condition "Ready" to 2026-04-16 17:30:49.925888701 +0000 UTC m=+2642.640971980 I0416 17:30:49.927318 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-control-plane-system/capi-kubeadm-control-plane-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-control-plane-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:50.052088 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:50.052072309 +0000 UTC m=+2642.767155598 I0416 17:30:50.146639 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:50.147289 1 conditions.go:192] Found status change for Certificate "capi-kubeadm-bootstrap-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:50.147277019 +0000 UTC m=+2642.862360308 I0416 17:30:50.176118 1 conditions.go:96] Setting lastTransitionTime for Issuer "capo-selfsigned-issuer" condition "Ready" to 2026-04-16 17:30:50.176093048 +0000 UTC m=+2642.891176357 I0416 17:30:50.192447 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="capo-system/capo-serving-cert" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:30:50.192483 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Issuing" to 2026-04-16 17:30:50.192473296 +0000 UTC m=+2642.907556585 I0416 17:30:50.192572 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-16 17:30:50.192561918 +0000 UTC m=+2642.907645207 I0416 17:30:50.462299 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:50.468313 1 conditions.go:203] Setting lastTransitionTime for Certificate "capo-serving-cert" condition "Ready" to 2026-04-16 17:30:50.468299247 +0000 UTC m=+2643.183382546 I0416 17:30:50.498410 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capi-kubeadm-bootstrap-system/capi-kubeadm-bootstrap-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capi-kubeadm-bootstrap-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:50.768143 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:50.905701 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Approved" to 2026-04-16 17:30:50.905680459 +0000 UTC m=+2643.620763748 I0416 17:30:50.977509 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "capo-serving-cert-1" condition "Ready" to 2026-04-16 17:30:50.977484995 +0000 UTC m=+2643.692568304 I0416 17:30:51.454124 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:51.454112535 +0000 UTC m=+2644.169195814 I0416 17:30:51.598567 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:51.599283 1 conditions.go:192] Found status change for Certificate "capo-serving-cert" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:30:51.599274849 +0000 UTC m=+2644.314358138 I0416 17:30:51.849080 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:30:51.899619 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="capo-system/capo-serving-cert" error="Operation cannot be fulfilled on certificates.cert-manager.io \"capo-serving-cert\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:30.543231 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:34:30.543344 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Issuing" to 2026-04-16 17:34:30.543302863 +0000 UTC m=+2863.258386172 I0416 17:34:30.543413 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-04-16 17:34:30.543400966 +0000 UTC m=+2863.258484245 I0416 17:34:30.557949 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:30.558156 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-api-certs" condition "Ready" to 2026-04-16 17:34:30.558142719 +0000 UTC m=+2863.273225988 I0416 17:34:30.790069 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:30.834431 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-1" condition "Approved" to 2026-04-16 17:34:30.834416195 +0000 UTC m=+2863.549499484 I0416 17:34:30.849413 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-api-certs-1" condition "Ready" to 2026-04-16 17:34:30.849404545 +0000 UTC m=+2863.564487834 I0416 17:34:30.881423 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:34:30.88140431 +0000 UTC m=+2863.596487589 I0416 17:34:30.895516 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:30.896154 1 conditions.go:192] Found status change for Certificate "magnum-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:34:30.896144893 +0000 UTC m=+2863.611228182 I0416 17:34:30.903318 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:30.914924 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:39.471576 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Ready" to 2026-04-16 17:34:39.47155684 +0000 UTC m=+2872.186640159 I0416 17:34:39.472214 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:34:39.472272 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-04-16 17:34:39.472265088 +0000 UTC m=+2872.187348397 I0416 17:34:39.487107 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:39.487214 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/magnum-registry-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:34:39.487272 1 conditions.go:203] Setting lastTransitionTime for Certificate "magnum-registry-certs" condition "Issuing" to 2026-04-16 17:34:39.487264639 +0000 UTC m=+2872.202347948 I0416 17:34:39.855439 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-1" condition "Approved" to 2026-04-16 17:34:39.855413656 +0000 UTC m=+2872.570496945 I0416 17:34:39.874539 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "magnum-registry-certs-1" condition "Ready" to 2026-04-16 17:34:39.874524717 +0000 UTC m=+2872.589607996 I0416 17:34:39.936314 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:34:39.936296826 +0000 UTC m=+2872.651380105 I0416 17:34:39.964091 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:39.964448 1 conditions.go:192] Found status change for Certificate "magnum-registry-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:34:39.964441727 +0000 UTC m=+2872.679525006 I0416 17:34:39.989520 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:34:39.996153 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/magnum-registry-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"magnum-registry-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:14.142686 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:39:14.142740 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-04-16 17:39:14.142731006 +0000 UTC m=+3146.857814285 I0416 17:39:14.142930 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Ready" to 2026-04-16 17:39:14.14290929 +0000 UTC m=+3146.857992599 I0416 17:39:14.160105 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:14.160245 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/manila-api-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:39:14.160288 1 conditions.go:203] Setting lastTransitionTime for Certificate "manila-api-certs" condition "Issuing" to 2026-04-16 17:39:14.160276214 +0000 UTC m=+3146.875359533 I0416 17:39:14.305885 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:14.319633 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-1" condition "Approved" to 2026-04-16 17:39:14.319613778 +0000 UTC m=+3147.034697097 I0416 17:39:14.334628 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "manila-api-certs-1" condition "Ready" to 2026-04-16 17:39:14.334616398 +0000 UTC m=+3147.049699687 I0416 17:39:14.363076 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:39:14.363062628 +0000 UTC m=+3147.078145907 I0416 17:39:14.380729 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:14.386140 1 conditions.go:192] Found status change for Certificate "manila-api-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:39:14.386126934 +0000 UTC m=+3147.101210223 I0416 17:39:14.395830 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:14.400221 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/manila-api-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"manila-api-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:57.190079 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-16 17:39:57.190063801 +0000 UTC m=+3189.905147110 I0416 17:39:57.190169 1 trigger_controller.go:215] "Certificate must be re-issued" logger="cert-manager.controller" key="openstack/horizon-int-certs" reason="DoesNotExist" message="Issuing certificate as Secret does not exist" I0416 17:39:57.190253 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Issuing" to 2026-04-16 17:39:57.190240676 +0000 UTC m=+3189.905323995 I0416 17:39:57.202680 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:57.202963 1 conditions.go:203] Setting lastTransitionTime for Certificate "horizon-int-certs" condition "Ready" to 2026-04-16 17:39:57.202949496 +0000 UTC m=+3189.918032805 I0416 17:39:57.327766 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:57.355386 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-1" condition "Approved" to 2026-04-16 17:39:57.355369395 +0000 UTC m=+3190.070452674 I0416 17:39:57.373491 1 conditions.go:263] Setting lastTransitionTime for CertificateRequest "horizon-int-certs-1" condition "Ready" to 2026-04-16 17:39:57.373473398 +0000 UTC m=+3190.088556717 I0416 17:39:57.400335 1 conditions.go:192] Found status change for Certificate "horizon-int-certs" condition "Ready": "False" -> "True"; setting lastTransitionTime to 2026-04-16 17:39:57.400320715 +0000 UTC m=+3190.115403994 I0416 17:39:57.419116 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again" I0416 17:39:57.463522 1 controller.go:157] "re-queuing item due to optimistic locking on resource" logger="cert-manager.controller" key="openstack/horizon-int-certs" error="Operation cannot be fulfilled on certificates.cert-manager.io \"horizon-int-certs\": the object has been modified; please apply your changes to the latest version and try again"